This script is Copyright (C) 2004-2015 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-200405-25
(tla: Multiple vulnerabilities in included libneon)
Multiple format string vulnerabilities and a heap overflow vulnerability
were discovered in the code of the neon library (GLSA 200405-01 and
200405-13). Current versions of the tla package include their own version
of this library.
When connected to a malicious WebDAV server, these vulnerabilities could
allow execution of arbitrary code with the rights of the user running tla.
There is no known workaround at this time.
See also :
All users of tla should upgrade to the latest stable version:
# emerge sync
# emerge -pv '>=dev-util/tla-1.2-r2'
# emerge '>=dev-util/tla-1.2-r2'
Risk factor :
Family: Gentoo Local Security Checks
Nessus Plugin ID: 14511 (gentoo_GLSA-200405-25.nasl)
Upgrade to Nessus Professional today!
Start your free Nessus Cloud trial now!
Begin Free Trial
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.