|
|
|
1、Xscan扫描出漏洞出,<br>
漏洞 pop3 (110/tcp) <br>
The remote POP3 server might be vulnerable to a buffer overflow <br>
bug when it is issued at least one of these commands, with a too long <br>
argument :<br>
<br>
auth<br>
user<br>
pass<br>
<br>
If confirmed, this problem might allow an attacker to execute<br>
arbitrary code on the remote system, thus giving him an interactive<br>
session on this host.<br>
<br>
Solution : If you do not use POP3, disable this service in /etc/inetd.conf<br>
and restart the inetd process. Otherwise, upgrade to a newer version.<br>
<br>
See also : <a target=_blank href=http://online.securityfocus.com/archive/1/27197>http://online.securityfocus.com/archive/1/27197</a><br>
Risk factor : High<br>
CVE_ID : CAN-2002-0799, CVE-1999-0822<br>
BUGTRAQ_ID : 789, 790, 830, 894, 942, 1965, 2781, 2811, 4055, 4295, 4614<br>
NESSUS_ID : 10184 <br>
<br>
升级成8.15?是不是最新版本?那以前的模板还能不能用?<br>
<br>
|
|