PT-2001-1072 · Xinetd · Xinetd

Publicado

2001-06-04

·

Atualizado

2018-05-03

·

CVE-2001-0763

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions xinetd versions 2.1.8.9pre11-1 and earlier
Description The issue concerns a buffer overflow in the xinetd package, which can be exploited remotely. This may allow attackers to execute arbitrary code via a long ident response that is not properly handled by the svc logprint function. The exploitation of these vulnerabilities can lead to a breach of confidentiality, integrity, and availability of protected information.
Recommendations For versions 2.1.8.9pre11-1 and earlier, consider updating to a version that fixes the buffer overflow issue in the svc logprint function to prevent remote attackers from executing arbitrary code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-08245
CVE-2001-0763

Produtos afetados

Xinetd