![]() |
|
|
|
|
|||||||
| Security Advisories (RSS) UNIX and Linux Security Advisories Via RSS News |
|
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| RedHat: Critical: samba security and bug fix update | iBot | Security Advisories (RSS) | 0 | 05-28-2008 06:10 AM |
| RedHat: Low: compiz security update | iBot | Security Advisories (RSS) | 0 | 05-21-2008 08:40 AM |
| RedHat: Important: libxslt security update | iBot | Security Advisories (RSS) | 0 | 05-21-2008 06:30 AM |
| RedHat: Important: gpdf security update | iBot | Security Advisories (RSS) | 0 | 05-08-2008 05:50 AM |
| RedHat: Moderate: cups security update | iBot | Security Advisories (RSS) | 0 | 04-01-2008 08:10 AM |
|
|
Submit Tools | LinkBack | Thread Tools | Display Modes |
|
||||
|
S-285: redhat-ds-admin Security Update
Several security vulnerabilities have been discovered in Directory Server:1) a shell command injection flaw in the Red Hat Administration Server replication monitor CGI script used by Red Hat Directory Server 8.0; and2) the Red Hat Administration Server does not properly restrict access to CGI scripts. The risk is MEDIUM. An attacker with access to the replication monitor web page could execute arbitrary shell commands with the privileges of the Administration Server and an unauthenticated remote user with access to the TCP port used by the Administration Server could access information or perform certain tasks that should have been restricted to Directory Server administrative users.
More... |
||||
| Google UNIX.COM |
| Forum Sponsor | ||
|
|
| Thread Tools | |
| Display Modes | |
|
|