PT-2005-1125 · Sco · Sco Unixware

Published

2005-01-11

·

Updated

2008-09-05

·

CVE-2004-1039

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions SCO UnixWare versions 7.0.1, 7.1.1, 7.1.3, 7.1.4
Description The issue allows remote attackers to cause a denial of service, specifically memory exhaustion, by sending a series of requests to the NFS mountd service when it is run from inetd. This results in inetd launching a separate process for each request.
Recommendations For SCO UnixWare versions 7.0.1, 7.1.1, 7.1.3, 7.1.4, consider restricting access to the NFS mountd service to prevent remote attackers from exploiting this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1039

Affected Products

Sco Unixware