Family: Red Hat Local Security Checks --> Category: infos
RHSA-2005-848: libc Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the libc packages
Detailed Explanation for this Vulnerability Test
Updated libc-client packages that fix a buffer overflow issue are now
This update has been rated as having moderate security impact by the Red
Hat Security Response Team.
C-client is a common API for accessing mailboxes.
A buffer overflow flaw was discovered in the way C-client parses user
supplied mailboxes. If an authenticated user requests a specially crafted
mailbox name, it may be possible to execute arbitrary code on a server that
uses C-client to access mailboxes. The Common Vulnerabilities and Exposures
project has assigned the name CVE-2005-2933 to this issue.
All users of libc-client should upgrade to these updated packages, which
contain a backported patch that resolves this issue.
Solution : http://rhn.redhat.com/errata/RHSA-2005-848.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.