PT-2003-1020 · Debian · Lyskom-Server

Publicado

2003-06-18

·

Atualizado

2008-09-05

·

CVE-2003-0366

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions lyskom-server versions 2.0.7 and earlier
Description The issue affects the lyskom-server package in the Debian GNU/Linux operating system, potentially leading to disruption of protected information availability. Exploitation can be carried out remotely. Specifically, unauthenticated users can cause a denial of service by consuming CPU resources via a large query.
Recommendations For lyskom-server versions 2.0.7 and earlier, consider restricting access to prevent unauthenticated users from sending large queries as a temporary workaround until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-02878
CVE-2003-0366
DSA-318

Produtos afetados

Lyskom-Server