First published: Tue Dec 31 2002(Updated: )
Akfingerd 0.5 and possibly earlier versions only allows one connection at a time and does not time out connections, which allows remote attackers to cause a denial of service (refused connections) by opening a connection and not closing it.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
cfingerd | =0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2243 is classified as a denial of service vulnerability.
To mitigate CVE-2002-2243, consider implementing a connection timeout feature or upgrade to a version of Akfingerd that addresses this issue.
CVE-2002-2243 affects Akfingerd version 0.5 and possibly earlier versions.
CVE-2002-2243 allows for a denial of service attack by permitting only one connection at a time and failing to time out inactive connections.
Yes, there are known exploits for CVE-2002-2243 that allow attackers to open connections and cause service refusal.