Oval Definition:oval:org.mitre.oval:def:6907
Revision Date:2014-01-20Version:5
Title:VMware ESX,Service Console update for cpio and tar.
Description:Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arbitrary code by sending more data than was requested, related to archive filenames that contain a : (colon) character.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-0624
Platform(s):VMWare ESX Server 3.5
VMWare ESX Server 4.0
Product(s):
Definition Synopsis
  • AND
  • VMware ESX Server 3.5.0 is installed
  • AND Not to be vulnerable, all the patches should be installed.
  • Patch ESX350-201008405-SG is not installed.
  • OR Patch ESX350-201008407-SG is not installed.
  • OR
  • VMware ESX Server 4.0 is installed
  • AND Not to be vulnerable, all the patches should be installed.
  • Patch ESX400-201009402-SG is not installed.
  • OR Patch ESX400-201009406-SG is not installed.
  • BACK