Vulnerability Description
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Aix | 4.1.5 |
References
FAQ
What is CVE-1999-1075?
CVE-1999-1075 is a vulnerability with a CVSS score of 5.0 (MEDIUM). inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attack...
How severe is CVE-1999-1075?
CVE-1999-1075 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1075?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Aix.