All errata/c6/ALT-PU-2015-2176-1
ALT-PU-2015-2176-1

Package update xinetd in branch c6

Version2.3.14-alt4.M60C.2
Published2015-12-25
Max severityMEDIUM
Severity:

Closed issues (1)

CVE-2012-0862
MEDIUM4.3

builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.

Published: 2012-06-04Modified: 2026-04-29
CVSS 2.0MEDIUM 4.3
CVSS:2.0/AV:N/AC:M/Au:N/C:P/I:N/A:N