PT-2003-1020 · Debian · Lyskom-Server
Published
2003-06-18
·
Updated
2008-09-05
·
CVE-2003-0366
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
lyskom-server versions 2.0.7 and earlier
Description
The issue affects the lyskom-server package in the Debian GNU/Linux operating system, potentially leading to disruption of protected information availability. Exploitation can be carried out remotely. Specifically, unauthenticated users can cause a denial of service by consuming CPU resources via a large query.
Recommendations
For lyskom-server versions 2.0.7 and earlier, consider restricting access to prevent unauthenticated users from sending large queries as a temporary workaround until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lyskom-Server