FreeBSD : py-foolscap -- local file inclusion (09fff0d9-4126-11e5-9f01-14dae9d210b8)

This script is Copyright (C) 2015 Tenable Network Security, Inc.


Synopsis :

The remote FreeBSD host is missing one or more security-related
updates.

Description :

Brian Warner reports :

The 'flappserver' feature was found to have a vulnerability in the
service-lookup code which, when combined with an attacker who has the
ability to write files to a location where the flappserver process
could read them, would allow that attacker to obtain control of the
flappserver process.

See also :

http://www.nessus.org/u?77d085fe
http://foolscap.lothar.com/trac/ticket/226
http://www.nessus.org/u?d7d8fb66

Solution :

Update the affected packages.

Risk factor :

High

Family: FreeBSD Local Security Checks

Nessus Plugin ID: 85366 ()

Bugtraq ID:

CVE ID:

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now