PT-1998-1144 · Ibm · Aix
Publicado
1998-03-18
·
Atualizado
2016-10-18
·
CVE-1999-1075
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
AIX version 4.1.5
Description
The issue allows remote attackers to cause a denial of service by making a large number of connections to a specific port, which are not properly closed. This is due to
inetd in AIX dynamically assigning a port when starting ttdbserver (ToolTalk server) and inadvertently listening on the previous port without passing control to ttdbserver.Recommendations
For AIX version 4.1.5, consider restricting access to the affected port to minimize the risk of exploitation. As a temporary workaround, restrict the number of connections to the port used by
ttdbserver to prevent a denial of service.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Aix