Oval Definition:oval:org.mitre.oval:def:21485
Revision Date:2014-02-24Version:35
Title:RHSA-2010:0144: cpio security update (Moderate)
Description:Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arbitrary code by sending more data than was requested, related to archive filenames that contain a : (colon) character.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2010:0144
CVE-2007-4476
CVE-2010-0624
RHSA-2010:0144-01
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 5
Product(s):cpio
Definition Synopsis
  • Redhat 5 or Centos 5 release
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND cpio is earlier than 0:2.6-23.el5_4.1
  • BACK