Scientific Linux Security Update : icu on SL5.x i386/x86_64

This script is Copyright (C) 2012 Tenable Network Security, Inc.


Synopsis :

The remote Scientific Linux host is missing one or more security
updates.

Description :

A flaw was found in the way ICU processed certain, invalid byte
sequences during Unicode conversion. If an application used ICU to
decode malformed, multibyte character data, it may have been possible
to bypass certain content protection mechanisms, or display
information in a manner misleading to the user. (CVE-2009-0153)

See also :

http://www.nessus.org/u?940d180a

Solution :

Update the affected packages.

Risk factor :

Medium / CVSS Base Score : 4.3
(CVSS2#AV:N/AC:M/Au:N/C:N/I:P/A:N)

Family: Scientific Linux Local Security Checks

Nessus Plugin ID: 60603 ()

Bugtraq ID:

CVE ID: CVE-2009-0153