语言:
严重性: High
ID: 53430
文件名: centos_RHSA-2011-0412.nasl
版本: 1.15
类型: local
代理: unix
发布时间: 2011/4/15
最近更新时间: 2021/1/4
支持的传感器: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus
风险因素: High
分数: 7.4
风险因素: High
基本分数: 7.2
时间分数: 6
矢量: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C
CPE: p-cpe:/a:centos:centos:glibc, p-cpe:/a:centos:centos:glibc-common, p-cpe:/a:centos:centos:glibc-devel, p-cpe:/a:centos:centos:glibc-headers, p-cpe:/a:centos:centos:glibc-utils, p-cpe:/a:centos:centos:nscd, cpe:/o:centos:centos:5
必需的 KB 项: Host/local_checks_enabled, Host/CentOS/release, Host/CentOS/rpm-list
可利用: true
易利用性: Exploits are available
补丁发布日期: 2011/4/14
漏洞发布日期: 2010/6/1
CANVAS (CANVAS)
Core Impact
Metasploit (glibc "$ORIGIN" Expansion Privilege Escalation)
CVE: CVE-2010-0296, CVE-2010-3847, CVE-2011-0536, CVE-2011-1071, CVE-2011-1095, CVE-2011-1658, CVE-2011-1659
RHSA: 2011:0412