Troubleshooting

Ubuntu 14.04 — hplip — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — hplip — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 6 February 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-2699-1 Related CVEs: CVE-2015-0839 Upstream summary: Enrico Zini discovered that HPLIP used a short GPG key ID when downloading keys from the keyserver. An attacker could possibly use this to […]

Read more
IBM AIX 7.2 — CVE-1999-0017 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0017 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 5 February 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0017, IBM PSIRT advisory page CVE: CVE-1999-0017 NVD summary: FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. References: exchange.xforce.ibmcloud.com/vulnerabilities/CVE […]

Read more
IBM AIX 7.2 — CVE-2008-5387 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2008-5387 — buffer overflow — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 5 February 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2008-5387, IBM Support Bulletin CVE: CVE-2008-5387 NVD summary: Buffer overflow in autoconf6 in IBM AIX 6.1.0 through 6.1.2, when Role-Based Access Control is enabled, allows local users with aix.network.config.tcpip authorization to gain […]

Read more
SLES 12 — lua — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — lua — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 5 February 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2014-5461 Upstream summary: Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial […]

Read more
IBM AIX 7.2 — CVE-1999-0009 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0009 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 4 February 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0009, IBM PSIRT advisory page CVE: CVE-1999-0009 NVD summary: Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. References: ftp://patches.sgi.com/support/free/security/advi   sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=col   www.securityfocus.com/bid/134 Table of contents Symptom & Impact […]

Read more
IBM AIX 7.2 — CVE-1999-0064 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0064 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 31 January 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0064, IBM PSIRT advisory page CVE: CVE-1999-0064 NVD summary: Buffer overflow in AIX lquerylv program gives root access to local users. References: marc.info/?l=bugtraq&m=87602167418428&w=2   marc.info/?l=bugtraq&m=87602167418428&w=2 Table of contents Symptom & Impact Environment […]

Read more
SLES 12 — powerpc-utils — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — powerpc-utils — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 31 January 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2014:1211-1 (see also SUSE bugzilla) Related CVEs: CVE-2014-4040 Upstream summary: snap in powerpc-utils 1.2.20 produces an archive with fstab and yaboot.conf files potentially containing cleartext passwords, and lacks a warning about reviewing […]

Read more
Ubuntu 14.04 — nspr — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — nspr — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 30 January 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3028-1 Related CVEs: CVE-2016-1951 CVE-2015-7183 CVE-2014-1545 Upstream summary: It was discovered that NSPR incorrectly handled memory allocation. A remote attacker could use this issue to cause NSPR to crash, resulting […]

Read more
CHAT