PT-1998-1144 · Ibm · Aix

Published

1998-03-18

·

Updated

2016-10-18

·

CVE-1999-1075

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions AIX version 4.1.5
Description The issue allows remote attackers to cause a denial of service by making a large number of connections to a specific port, which are not properly closed. This is due to inetd in AIX dynamically assigning a port when starting ttdbserver (ToolTalk server) and inadvertently listening on the previous port without passing control to ttdbserver.
Recommendations For AIX version 4.1.5, consider restricting access to the affected port to minimize the risk of exploitation. As a temporary workaround, restrict the number of connections to the port used by ttdbserver to prevent a denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1075

Affected Products

Aix