This script is Copyright (C) 2014 Tenable Network Security, Inc.
The remote Amazon Linux AMI host is missing a security update.
An integer overflow, which led to a heap-based buffer overflow, was
found in the way pixman handled trapezoids. If a remote attacker could
trick an application using pixman into rendering a trapezoid shape
with specially crafted coordinates, it could cause the application to
crash or, possibly, execute arbitrary code with the privileges of the
user running the application. (CVE-2013-6425)
See also :
Run 'yum update pixman' to update your system.
Risk factor :
Medium / CVSS Base Score : 5.0
Family: Amazon Linux Local Security Checks
Nessus Plugin ID: 72290 ()
CVE ID: CVE-2013-6425