Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2006:188: mono Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the mono package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2006:188 (mono).
Sebastian Krahmer of the SUSE security team found that the
System.CodeDom.Compiler classes in mono used temporary files in an
insecure way that could allow a symbolic link attack to overwrite
arbitrary files with the rights of the user running a program that
made use of those classes.
Updated packages have been patched to correct this issue.
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:188
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.