FreeBSD : mumble -- multiple vulnerabilities (77e2e631-e742-11e3-9a25-5404a6a6412c)

high Nessus Plugin ID 74239

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

Mumble reports :

SVG images with local file references could trigger client DoS

The Mumble client did not properly HTML-escape some external strings before using them in a rich-text (HTML) context.

Solution

Update the affected package.

See Also

https://www.mumble.info/security/Mumble-SA-2014-005.txt

https://www.mumble.info/security/Mumble-SA-2014-006.txt

http://www.nessus.org/u?eb0b26dc

Plugin Details

Severity: High

ID: 74239

File Name: freebsd_pkg_77e2e631e74211e39a255404a6a6412c.nasl

Version: 1.5

Type: local

Published: 5/30/2014

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:mumble, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 5/29/2014

Vulnerability Publication Date: 4/16/2014