MDVA-2010:148 : msec

high Nessus Plugin ID 48116

Synopsis

The remote Mandriva host is missing one or more security-related patches.

Description

This update fixes a number of issues in msec: - this update fixes incorrect German localization for msecperms messages (bug #51005) - this update allows to import legacy perm.local permissions configuration file, which could be installed by third-party applications - this update fixes a crash when pam_unix is used together with msec (bug #58018). Note that this configuration is not used by Mandriva Linux usually, but can be employed in some custom environments. - this update adds a IGNORE_PID_CHANGES variable to filter changes in process PIDs when reporting changes in network configuration (bug #56744). To use this functionality, add a IGNORE_PID_CHANGES=yes into /etc/security/msec/security.conf, and changes in listening network ports will be ignored during periodic checks. - this update fixes an issue when chkrootkit results were not properly excluded by the exceptions list (bug #58076)

Solution

Update the affected package(s).

See Also

http://www.mandriva.com/security/advisories?name=MDVA-2010:148

Plugin Details

Severity: High

ID: 48116

File Name: mandriva_MDVA-2010-148.nasl

Version: 1.9

Type: local

Published: 7/30/2010

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/o:mandriva:linux

Required KB Items: Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 5/14/2010