XFree86 XDM RequestPort Random Open TCP Socket Vulnerability

Bugtraq ID: 10423
Class: Design Error
CVE: CVE-2004-0419
Remote: Yes
Local: No
Published: May 27 2004 12:00AM
Updated: Jul 12 2009 05:16AM
Credit: Discovery of this vulnerability is credited to Steve Rumble <rumble@ephemeral.org>.
Vulnerable: XFree86 xdm CVS
+ OpenBSD OpenBSD 3.5
X.org X11R6 6.7 .0
+ Mandriva Linux Mandrake 10.1 x86_64
+ Mandriva Linux Mandrake 10.1
+ SCO Unixware 7.1.4
+ SCO Unixware 7.1.3 up
+ SCO Unixware 7.1.3
+ SCO Unixware 7.1.1
Redhat Linux 9.0 i386
Redhat Linux 7.3
Redhat Fedora Core1
Redhat Enterprise Linux WS 3
Redhat Enterprise Linux ES 3
Redhat Enterprise Linux AS 3
Redhat Desktop 3.0
Gentoo Linux 1.4
Avaya Modular Messaging (MSS) 2.0
Avaya Modular Messaging (MSS) 1.1
Avaya MN100
Avaya Intuity LX
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus