PT-2001-1072 · Xinetd · Xinetd

Published

2001-06-04

·

Updated

2018-05-03

·

CVE-2001-0763

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions xinetd versions 2.1.8.9pre11-1 and earlier
Description The issue concerns a buffer overflow in the xinetd package, which can be exploited remotely. This may allow attackers to execute arbitrary code via a long ident response that is not properly handled by the svc logprint function. The exploitation of these vulnerabilities can lead to a breach of confidentiality, integrity, and availability of protected information.
Recommendations For versions 2.1.8.9pre11-1 and earlier, consider updating to a version that fixes the buffer overflow issue in the svc logprint function to prevent remote attackers from executing arbitrary code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-08245
CVE-2001-0763

Affected Products

Xinetd