PT-1998-1144 · Ibm · Aix

Publicado

1998-03-18

·

Atualizado

2016-10-18

·

CVE-1999-1075

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions AIX version 4.1.5
Description The issue allows remote attackers to cause a denial of service by making a large number of connections to a specific port, which are not properly closed. This is due to inetd in AIX dynamically assigning a port when starting ttdbserver (ToolTalk server) and inadvertently listening on the previous port without passing control to ttdbserver.
Recommendations For AIX version 4.1.5, consider restricting access to the affected port to minimize the risk of exploitation. As a temporary workaround, restrict the number of connections to the port used by ttdbserver to prevent a denial of service.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-1999-1075

Produtos afetados

Aix