Revision Date: | 2014-01-20 | Version: | 5 |
Title: | VMware ESX,Service Console update for cpio and tar. |
Description: | Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arbitrary code by sending more data than was requested, related to archive filenames that contain a : (colon) character. |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2010-0624
|
Platform(s): | VMWare ESX Server 3.5 VMWare ESX Server 4.0
| Product(s): | |
Definition Synopsis |
AND VMware ESX Server 3.5.0 is installed
AND Not to be vulnerable, all the patches should be installed.
Patch ESX350-201008405-SG is not installed.
OR Patch ESX350-201008407-SG is not installed.
OR
VMware ESX Server 4.0 is installed
AND Not to be vulnerable, all the patches should be installed.
Patch ESX400-201009402-SG is not installed.
OR Patch ESX400-201009406-SG is not installed.
|