MDVSA-2013:248 -- Mandriva xinetdID: oval:org.secpod.oval:def:1300240 | Date: (C)2013-11-01 (M)2023-12-07 |
Class: PATCH | Family: unix |
Updated xinetd package fixes security vulnerability: It was found that xinetd ignored the user and group configuration directives for services running under the tcpmux-server service. This flaw could cause the associated services to run as root. If there was a flaw in such a service, a remote attacker could use it to execute arbitrary code with the privileges of the root user .
Platform: |
Mandriva Enterprise Server 5.2 |