Mandriva Linux Security Advisory : mono (MDVSA-2009:268)

medium Nessus Plugin ID 42095

Synopsis

The remote Mandriva Linux host is missing one or more security updates.

Description

Multiple vulnerabilities has been found and corrected in mono :

Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via crafted attributes related to (1) HtmlControl.cs (PreProcessRelativeReference), (2) HtmlForm.cs (RenderAttributes), (3) HtmlInputButton (RenderAttributes), (4) HtmlInputRadioButton (RenderAttributes), and (5) HtmlSelect (RenderChildren) (CVE-2008-3422).

The XML HMAC signature system did not correctly check certain lengths.
If an attacker sent a truncated HMAC, it could bypass authentication, leading to potential privilege escalation (CVE-2009-0217).

This update fixes these vulnerabilities.

Solution

Update the affected packages.

Plugin Details

Severity: Medium

ID: 42095

File Name: mandriva_MDVSA-2009-268.nasl

Version: 1.18

Type: local

Published: 10/13/2009

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.0

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:mono-extras, p-cpe:/a:mandriva:linux:mono, p-cpe:/a:mandriva:linux:mono-data-oracle, p-cpe:/a:mandriva:linux:mono-web, p-cpe:/a:mandriva:linux:mono-data-sqlite, p-cpe:/a:mandriva:linux:mono-ibm-data-db2, p-cpe:/a:mandriva:linux:jay, p-cpe:/a:mandriva:linux:mono-nunit, p-cpe:/a:mandriva:linux:mono-data, p-cpe:/a:mandriva:linux:mono-doc, p-cpe:/a:mandriva:linux:mono-jscript, p-cpe:/a:mandriva:linux:mono-locale-extras, p-cpe:/a:mandriva:linux:mono-data-firebird, p-cpe:/a:mandriva:linux:mono-data-postgresql, cpe:/o:mandriva:linux:2009.0, p-cpe:/a:mandriva:linux:mono-data-sybase, p-cpe:/a:mandriva:linux:libmono-devel, p-cpe:/a:mandriva:linux:mono-winforms, p-cpe:/a:mandriva:linux:lib64mono-devel, cpe:/o:mandriva:linux:2008.1, p-cpe:/a:mandriva:linux:lib64mono0, p-cpe:/a:mandriva:linux:libmono0, p-cpe:/a:mandriva:linux:mono-bytefx-data-mysql

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 10/12/2009

Reference Information

CVE: CVE-2008-3422, CVE-2009-0217

BID: 35671

CWE: 79

MDVSA: 2009:268