5
CVSSv2

CVE-1999-0746

Published: 16/08/1999 Updated: 09/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote malicious user to conduct a denial of service.

Vulnerable Product Search on Vulmon Subscribe to Product

slackware slackware linux 3.2

slackware slackware linux 3.6

suse suse linux 4.4

suse suse linux 4.4.1

suse suse linux 5.1

suse suse linux 5.3

suse suse linux 6.0

suse suse linux 6.1

suse suse linux 6.2

suse suse linux 5.0

suse suse linux 5.2

Exploits

source: wwwsecurityfocuscom/bid/587/info In the inetdconf under certain distributions of SuSE Linux the inidentd daemon is started with the -w -t120 option This means that one identd process waits 120 seconds after answering the first request to answer the next request If a malicious remote attacker starts a large number of ident requ ...