The “GHOST” vulnerability is a security flaw within a key component of the Linux Operating System. The affected component “gethostbyname” is found in the Linux GNU C Library that is used by all Linux programs. If an attacker can pass a specially crafted hostname to the affected function it may be possible to execute malicious code on the system.
At the time of writing at least one exploitable scenario has been successfully demonstrated within the Exim mail system, further vectors including attacks against WordPress are being actively explored within the security community.
Appcheck NG has been updated to test for all currently known vectors including:
* WordPress xmlrpc.php pingback
* Local detection
Further attack vectors will be added as soon as they become known.
No software to download or install.
Contact us or call us 0113 887 8380
AppCheck is a software security vendor based in the UK, offering a leading security scanning platform that automates the discovery of security flaws within organisations websites, applications, network and cloud infrastructure. AppCheck are authorized by te Common Vulnerabilities and Exposures (CVE) Program aas a CVE Numbering Authority (CNA)