Skip to content
Noroxi

xinetd records

8 published records for vendor xinetd.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    8 records
    • Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a le

      CriticalCVSS 10.0No exploitEPSS 4%

      xinetd · xinetdDec 6, 2001

    • CVE-2013-4342
      32Monitor

      xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and m

      HighCVSS 7.6No exploitEPSS 6%

      xinetd · xinetdOct 9, 2013

    • CVE-2001-1389
      31Monitor

      Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of s

      HighCVSS 7.5No exploitEPSS 3%

      xinetd · xinetdAug 29, 2001

    • CVE-2000-0536
      31Monitor

      xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a rever

      HighCVSS 7.5No exploitEPSS 2%

      xinetd · xinetdJun 4, 2000

    • CVE-2003-0211
      23Monitor

      Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connec

      MediumCVSS 5.0Proof of conceptEPSS 9%

      xinetd · xinetdMay 5, 2003

    • CVE-2012-0862
      18Monitor

      builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled serv

      MediumCVSS 4.3No exploitEPSS 3%

      xinetd · xinetdJun 4, 2012

    • CVE-2001-1322
      14Monitor

      xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an applic

      LowCVSS 3.6No exploitEPSS 0%

      xinetd · xinetdJul 10, 2001

    • xinetd 2.3.4 leaks file descriptors for the signal pipe to services that are launched by xinetd, which could allow those services to cause a

      LowCVSS 2.1No exploitEPSS 0%

      xinetd · xinetdSep 5, 2002