This script is Copyright (C) 2012-2013 Tenable Network Security, Inc.
The remote FreeBSD host is missing a security-related update.
The socat development team reports :
This vulnerability can be exploited when socat is invoked with the
READLINE address (this is usually only used interactively) without
option 'prompt' and without option 'noprompt' and an attacker succeeds
to provide malicious data to the other (arbitrary) address that is
then transferred by socat to the READLINE address for output.
Successful exploitation may allow an attacker to execute arbitrary
code with the privileges of the socat process.
See also :
Update the affected package.
Risk factor :
Medium / CVSS Base Score : 6.2