Executive Summary
Summary | |
---|---|
Title | inetutils security update |
Informations | |||
---|---|---|---|
Name | DSA-2645 | First vendor Publication | 2013-03-14 |
Vendor | Debian | Last vendor Modification | 2013-03-14 |
Severity (Vendor) | N/A | Revision | 1 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:P) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Ovidiu Mara reported in 2010 a vulnerability in the ping util, commonly used by system and network administrators. By carefully crafting ICMP responses, an attacker could make the ping command hangs. For the stable distribution (squeeze), this problem has been fixed in version 2:1.6-3.1+squeeze2. For the testing distribution (wheezy), this problem has been fixed in version 2:1.9-2. For the unstable distribution (sid), this problem has been fixed in version 2:1.9-2. We recommend that you upgrade your inetutils packages. |
Original Source
Url : http://www.debian.org/security/2013/dsa-2645 |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:18455 | |||
Oval ID: | oval:org.mitre.oval:def:18455 | ||
Title: | DSA-2645-1 inetutils - denial of service | ||
Description: | Ovidiu Mara reported in 2010 a vulnerability in the ping util, commonly used by system and network administrators. By carefully crafting ICMP responses, an attacker could make the ping command hangs. | ||
Family: | unix | Class: | patch |
Reference(s): | DSA-2645-1 CVE-2010-2529 | Version: | 5 |
Platform(s): | Debian GNU/Linux 6.0 Debian GNU/kFreeBSD 6.0 | Product(s): | inetutils |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 4 |
OpenVAS Exploits
Date | Description |
---|---|
2010-08-20 | Name : Fedora Update for iputils FEDORA-2010-12252 File : nvt/gb_fedora_2010_12252_iputils_fc12.nasl |
2010-08-13 | Name : Fedora Update for iputils FEDORA-2010-12273 File : nvt/gb_fedora_2010_12273_iputils_fc13.nasl |
2010-07-26 | Name : Mandriva Update for iputils MDVSA-2010:138 (iputils) File : nvt/gb_mandriva_MDVSA_2010_138.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
66681 | iputils on Mandriva ping.c Crafted Echo Response Remote DoS |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2014-12-15 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-201412-08.nasl - Type : ACT_GATHER_INFO |
2013-03-15 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-2645.nasl - Type : ACT_GATHER_INFO |
2010-08-18 | Name : The remote Fedora host is missing a security update. File : fedora_2010-12252.nasl - Type : ACT_GATHER_INFO |
2010-08-12 | Name : The remote Fedora host is missing a security update. File : fedora_2010-12273.nasl - Type : ACT_GATHER_INFO |
2010-07-30 | Name : The remote Mandriva Linux host is missing a security update. File : mandriva_MDVSA-2010-138.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2014-02-17 11:31:44 |
|
2013-03-15 00:17:25 |
|