rwhod Remote Denial of Service Vulnerability

The rwhod daemon maintains status information of networked machines and serves this information to an rwho client. This daemon is vulnerable to a denial of service, which does NOT affect other processes (unless they are reliant upon rwhod data for proper functioning). The problem results from an inability to process unexpectedly short rwho data sent to the daemon over the network.


