First published: Tue Dec 31 2002(Updated: )
ypbind in Compaq Tru64 4.0F, 4.0G, 5.0A, 5.1 and 5.1A allows remote attackers to cause the process to core dump via certain network packets generated by nmap.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP Tru64 UNIX | =4.0g | |
HP Tru64 UNIX | =5.0a | |
HP Tru64 UNIX | =4.0f | |
HP Tru64 UNIX | =5.1a | |
HP Tru64 UNIX | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2003 is considered to have a high severity due to its potential to cause a denial of service through process crashes.
To fix CVE-2002-2003, users should apply the relevant patches provided by Compaq for their Tru64 versions.
CVE-2002-2003 affects Compaq Tru64 versions 4.0F, 4.0G, 5.0A, 5.1, and 5.1A.
CVE-2002-2003 describes a denial of service attack that can be caused by specific network packets sent to ypbind.
While waiting for a patch for CVE-2002-2003, it is advisable to restrict access to ypbind and limit network exposure.