20010608 potential buffer overflow in xinetd-2.1.8.9pre11-1mailing list
http://archives.neohapsis.com/archives/bugtraq/2001-06/0064.html CVE-2001-0763
Xinetd 2.1.8 - Remote Buffer Overflow
Record summary
CVE-2001-0763 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arbitrary code via a long ident response, which is not properly handled by the svc_logprint function.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBXinetd 2.1.8 - Remote Buffer OverflowExploitDB exploitby qitest1Not analyzed1 file
References
10CLA-2001:404Vendor advisory
http://distro.conectiva.com.br/atualizacoes?id=a&anuncio=000404 IMNX-2001-70-024-01Vendor advisory
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-024-01 L-104Third-party advisoryGovernment resource
http://www.ciac.org/ciac/bulletins/l-104.shtml DSA-063Vendor advisory
http://www.debian.org/security/2001/dsa-063 ESA-20010621-01Vendor advisory
http://www.linuxsecurity.com/advisories/other_advisory-1469.html RHSA-2001:075Vendor advisory
http://www.redhat.com/support/errata/RHSA-2001-075.html 2840vdb entry
http://www.securityfocus.com/bid/2840 xinetd-identd-bo(6670)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6670 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0763