Oracle Solaris PAMのparse_user_name()のバッファオーバーフロー (CVE-2020-14871 )

critical Nessus プラグイン ID 142712

バージョン 1.153

Jun 21, 2024, 6:31 PM

  • Detection (updated detection for SonicOS devices)

Plugin Feed: 202406211831

バージョン 1.152

Jun 21, 2024, 2:16 PM

  • Logic Changes

Plugin Feed: 202406211416

バージョン 1.151

May 20, 2024, 10:13 AM

  • Logic Changes

Plugin Feed: 202405201013

バージョン 1.150

Mar 19, 2024, 6:40 PM

  • Logic Changes (Improving logging to reduce disk space usage)

Plugin Feed: 202403191840

バージョン 1.145

Jan 16, 2024, 8:55 PM

  • Logic Changes (Improving debug logging)

Plugin Feed: 202401162055

バージョン 1.143

Jan 16, 2024, 5:39 PM

  • Detection (Add carrier grade NAT IPs to the IPv4 private address ranges.. Support privacy mode DCOM over Kerberos)
  • Logic Changes (Improving debug logging)

Plugin Feed: 202401161739

バージョン 1.140

Dec 6, 2023, 12:08 AM

  • Logic Changes (Fixes bug in special case shell handling logic.)

Plugin Feed: 202312060008

バージョン 1.139

Dec 5, 2023, 9:49 PM

  • Logic Changes (Fixes bug in special case shell handling logic.)

Plugin Feed: 202312052149

バージョン 1.138

Nov 28, 2023, 11:17 AM

  • Detection (Fixing detection of Cisco Firepower devices)

Plugin Feed: 202311281117

バージョン 1.137

Nov 27, 2023, 6:11 PM

  • Detection (No longer fall back to the legacy SSH library. Only use the old library explicitly.)

Plugin Feed: 202311271811

バージョン 1.136

Nov 14, 2023, 4:21 PM

  • Detection (Support SHA2 based encryption for Kerberos)

Plugin Feed: 202311141621

バージョン 1.136

Nov 27, 2023, 4:16 PM

  • Detection (No longer fall back to the legacy SSH library. Only use the old library explicitly.)

Plugin Feed: 202311271616

バージョン 1.135

Oct 30, 2023, 1:08 PM

  • Detection (Fixed detection of JUNOS)

Plugin Feed: 202310301308

バージョン 1.134

Oct 25, 2023, 5:17 PM

  • Detection (Handle SSH exec hang and pagination ctrl codes for PanOS)

Plugin Feed: 202310251717

バージョン 1.129

Oct 4, 2023, 11:07 PM

  • Detection (Fixed Cisco Firepower detection)

Plugin Feed: 202310042307

バージョン 1.128

Sep 26, 2023, 8:16 PM

  • Logic Changes

Plugin Feed: 202309262016

バージョン 1.125

Jul 24, 2023, 7:10 PM

  • Logic Changes (added debugging)

Plugin Feed: 202307241910

バージョン 1.123

Jul 17, 2023, 5:15 PM

  • Logic Changes (Make torture_cgi library PCP clean and consolidate utf16_to_ascii(). Permit CIDR entries in target priority list)

Plugin Feed: 202307171715

バージョン 1.121

Jul 10, 2023, 7:11 PM

  • Logic Changes (Restrict ClientHello ciphersuites by encapsulation)

Plugin Feed: 202307101911

バージョン 1.120

Jul 5, 2023, 9:03 PM

  • Logic Changes (added ingestion and ability of target priority lists for SSH credentials)

Plugin Feed: 202307052103

バージョン 1.119

Jun 20, 2023, 9:07 PM

  • Logic Changes (Temporarily limit debug logging)

Plugin Feed: 202306202107

バージョン 1.114

Jun 1, 2023, 5:27 AM

  • Logic Changes (Better logging)

Plugin Feed: 202306010527

バージョン 1.113

May 18, 2023, 1:08 AM

  • Detection (Port Alcatel-Lucent OmniSwitch support from ssh_get_info.nasl to ssh_lib as a rate limited device.)

Plugin Feed: 202305180108

バージョン 1.111

May 16, 2023, 7:02 PM

  • Detection (Authenticate WMI/DCOM using Kerberos credentials.)

Plugin Feed: 202305161902

バージョン 1.109

May 1, 2023, 9:07 PM

  • Detection (Make and use compatibility wrapper for running commands on scanner localhost to handle deprecation of pread().)

Plugin Feed: 202305012107

バージョン 1.107

Apr 25, 2023, 11:11 PM

  • CVSS temporal metrics (Adjust exploitability metrics for CISA KEV vulnerabilities)

Plugin Feed: 202304252311

バージョン 1.105

Apr 6, 2023, 6:58 PM

  • Detection (Add Kerberos debug logging)

Plugin Feed: 202304061858

バージョン 1.103

Mar 8, 2023, 1:05 AM

  • Logic Changes

Plugin Feed: 202303080105

* Changelogs are generally available for changes made after Nov 1, 2022