oval:org.mitre.oval:def:12604

Definition Id: oval:org.mitre.oval:def:12604
 
Oval ID: oval:org.mitre.oval:def:12604
Title: DSA-2122-1 glibc -- missing input sanitisation
Description: Ben Hawkes and Tavis Ormandy discovered that the dynamic loader in GNU libc allows local users to gain root privileges using a crafted LD_AUDIT environment variable. For the stable distribution, this problem has been fixed in version 2.7-18lenny6. For the upcoming stable distribution, this problem has been fixed in version 2.11.2-6+squeeze1 of the eglibc package. For the unstable distribution, this problem will be fixed soon. We recommend that you upgrade your glibc packages.
Family: unix Class: patch
Reference(s): DSA-2122-1
CVE-2010-3847
CVE-2010-3856
Version: 5
Platform(s): Debian GNU/Linux 5.0
Product(s): glibc
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:6513
 
Oval ID: oval:org.mitre.oval:def:6513
Title: Debian GNU/Linux 5.0 is installed
Description: Debian GNU/Linux 5.0 (lenny) is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian_gnu/linux:5.0
Version: 7
Platform(s): Debian GNU/Linux 5.0
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:12604