CPE Details

Xinetd
-
2013-10-10
12h26 +00:00
2014-02-27
23h28 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:xinetd:xinetd:-:*:*:*:*:*:*:*

Informations

Vendor

xinetd

Product

xinetd

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-4342 2013-10-09 22h00 +00:00 xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by leveraging another vulnerability in a service.
7.6
CVE-2012-0862 2012-06-04 18h00 +00:00 builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.
4.3
CVE-2001-0825 2004-09-01 02h00 +00:00 Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a length argument of zero or less, which disables the length check.
10