CVE-1999-1075

AIX 4.1.5 - Denial of Service via Unmanaged Port N-1 Connections

Title source: llm
STIX 2.1

Description

inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=89025820612530&w=2

Scores

EPSS 0.0127
EPSS Percentile 66.9%

Details

Status published
Products (1)
ibm/aix 4.1.5
Published Mar 18, 1998
Tracked Since Feb 18, 2026