PT-1998-1144 · Ibm · Aix
Published
1998-03-18
·
Updated
2016-10-18
·
CVE-1999-1075
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
AIX version 4.1.5
Description
The issue allows remote attackers to cause a denial of service by making a large number of connections to a specific port, which are not properly closed. This is due to
inetd in AIX dynamically assigning a port when starting ttdbserver (ToolTalk server) and inadvertently listening on the previous port without passing control to ttdbserver.Recommendations
For AIX version 4.1.5, consider restricting access to the affected port to minimize the risk of exploitation. As a temporary workaround, restrict the number of connections to the port used by
ttdbserver to prevent a denial of service.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aix