CNCVE编号:CNCVE-20010825 CVE编号:CAN-2001-0825 安全级别:高 漏洞中文描述: xinetd 2.3.1的内部字符串处理程序中的缓冲区溢出允许远程攻击者通过一个零或较短长度的参数来执行命令,这使长度校验无效。 漏洞英文描述: Buffer overflow in internal string handling routines of xinetd before 2.3.1 allows remote attackers to execute arbitrary commands via a length argument of zero or less, which disables the length check. 漏洞参考: Reference: BUGTRAQ:20010608 potential buffer overflow in xinetd-2.1.8.9pre11-1 Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=99201419609509&w=2 Reference: BUGTRAQ:20010629 xinetd update -- Immunix OS 7.0-beta, 7.0 Reference: URL:http:/ 系统类型:其他 漏洞类型:输入有效性检查错误