This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Avaya First view 2001-12-31
Product Interactive Response Last view 2004-12-21
Version * Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:avaya:interactive_response

Activity : Overall

Related : CVE

  Date Alert Description
7.5 2004-12-21 CVE-2004-1307

Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.

5.5 2001-12-31 CVE-2001-1494

script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-59 Improper Link Resolution Before File Access ('Link Following')

Open Source Vulnerability Database (OSVDB)

id Description
19934 util-linux script Hardlink Arbitrary File Overwrite
12556 LibTIFF STRIPOFFSETS Flag TIFFFetchStripThing() Function Overflow

OpenVAS Exploits

id Description
2009-06-03 Name : Solaris Update for CDE 1.4 109931-10
File : nvt/gb_solaris_109931_10.nasl
2009-06-03 Name : Solaris Update for sdtimage 109932-10
File : nvt/gb_solaris_109932_10.nasl
2009-06-03 Name : Solaris Update for CDE 1.5 114219-11
File : nvt/gb_solaris_114219_11.nasl
2009-06-03 Name : Solaris Update for sdtimage 114220-11
File : nvt/gb_solaris_114220_11.nasl

Nessus® Vulnerability Scanner

id Description
2006-07-03 Name: The remote CentOS host is missing one or more security updates.
File: centos_RHSA-2005-021.nasl - Type: ACT_GATHER_INFO
2006-07-03 Name: The remote CentOS host is missing one or more security updates.
File: centos_RHSA-2005-782.nasl - Type: ACT_GATHER_INFO
2005-10-19 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2005-782.nasl - Type: ACT_GATHER_INFO
2005-05-03 Name: The remote host is missing a Mac OS X update that fixes a security issue.
File: macosx_SecUpd2005-005.nasl - Type: ACT_GATHER_INFO
2005-04-12 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2005-021.nasl - Type: ACT_GATHER_INFO
2005-01-07 Name: The remote Mandrake Linux host is missing one or more security updates.
File: mandrake_MDKSA-2005-001.nasl - Type: ACT_GATHER_INFO
2005-01-07 Name: The remote Mandrake Linux host is missing one or more security updates.
File: mandrake_MDKSA-2005-002.nasl - Type: ACT_GATHER_INFO
2004-12-27 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-617.nasl - Type: ACT_GATHER_INFO
2004-11-04 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2004-577.nasl - Type: ACT_GATHER_INFO