Troubleshooting

IBM AIX 7.2 — CVE-1999-0835 — denial of service — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0835 — denial of service — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 12 October 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0835, IBM PSIRT advisory page CVE: CVE-1999-0835 NVD summary: Denial of service in BIND named via malformed SIG records. References: ftp://ftp.caldera.com/pub/security/OpenLinux/CSS   www.securityfocus.com/bid/788   ftp://ftp.caldera.com/pub/security/OpenLinux/CSS Table of contents Symptom & Impact Environment […]

Read more
IBM AIX 7.2 — CVE-2000-0844 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2000-0844 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 12 October 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2000-0844, IBM PSIRT advisory page CVE: CVE-2000-0844 NVD summary: Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary […]

Read more
SLES 12 — libass5 — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libass5 — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 12 October 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2016:3107-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-7970 CVE-2016-7971 CVE-2016-7969 CVE-2016-7972 Upstream summary: Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial […]

Read more
Ubuntu 16.04 — libimobiledevice — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — libimobiledevice — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 9 October 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3026-1 Related CVEs: CVE-2016-5104 Upstream summary: It was discovered that libimobiledevice incorrectly handled socket permissions. A remote attacker could use this issue to access services on iOS devices, contrary to […]

Read more
IBM AIX 7.2 — CVE-2010-0960 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2010-0960 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 9 October 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2010-0960, IBM Support Bulletin CVE: CVE-2010-0960 NVD summary: Buffer overflow in qosmod in bos.net.tcp.server in IBM AIX 6.1 and VIOS 2.1 allows local users to gain privileges via unspecified vectors. References: aix.software.ibm.com/aix/efixes/security/qosmod_ […]

Read more
IBM AIX 7.2 — CVE-2002-1040 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2002-1040 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 5 October 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2002-1040, IBM PSIRT advisory page CVE: CVE-2002-1040 NVD summary: Unknown vulnerability in the WebSecure (DFSWeb) configuration utilities in AIX 4.x, possibly related to relative pathnames. References: archives.neohapsis.com/archives/aix/2002-q3/0000   archives.neohapsis.com/archives/aix/2002-q3/0000 Table of contents […]

Read more
Ubuntu 16.04 — network-manager-applet — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — network-manager-applet — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 4 October 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3217-1 Related CVEs: https://launchpad.net/bugs/1668321 Upstream summary: Frederic Bardy and Quentin Biguenet discovered that network-manager-applet incorrectly checked permissions when connecting to certain wireless networks. A local attacker could use this issue […]

Read more
CHAT