Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2003-161: xinetd


Vulnerability Assessment Details

RHSA-2003-161: xinetd

Vulnerability Assessment Summary
Check for the version of the xinetd packages

Detailed Explanation for this Vulnerability Assessment


Updated xinetd packages fix a security vulnerability and other bugs.

Xinetd is a master server that is used to to accept service
connection requests and start the appropriate servers.

Because of a programming error, memory was allocated and never freed if a
connection was refused for any reason. A possible hacker could exploit this flaw
to crash the xinetd server, rendering all services it controls unavaliable.

In addition, other flaws in xinetd could cause incorrect operation in
certain unusual server configurations.

All users of xinetd are advised to update to the packages listed in this
erratum, which contain an upgrade to xinetd-2.3.11 and are not vulnerable
to these issues.




Solution : http://rhn.redhat.com/errata/RHSA-2003-161.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Juniper SRX320 8-Port Security Services Gateway Appliance
$452.41
Juniper SRX320 8-Port Security Services Gateway Appliance pictureCISCO ASA 5510 SERIES ASA5510-K8 V02 ADAPTIVE SECURITY APPLIANCE FIREWALL
$91.0
CISCO ASA 5510 SERIES ASA5510-K8 V02 ADAPTIVE SECURITY APPLIANCE FIREWALL pictureFirebox X15 Edge MF16S32E10 8-Port 10/100 Security Firewall Appliance
$27.99
Firebox X15 Edge MF16S32E10 8-Port 10/100 Security Firewall Appliance pictureCisco IronPort C170 Email Security Appliance Device No HDD
$49.95
Cisco IronPort C170 Email Security Appliance Device No HDD picture


Discussions

No Discussions have been posted on this vulnerability.