Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2003:056: xinetd Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the xinetd package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2003:056 (xinetd).
A vulnerability was discovered in xinetd where memory was allocated and never
freed if a connection was refused for any reason. Because of this bug, an
attacker could crash the xinetd server, making unavailable all of the services
it controls. Other flaws were also discovered that could cause incorrect
operation in certain strange configurations.
These issues have been fixed upstream in xinetd version 2.3.11 which are
provided in this update.
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2003:056
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.