|
|
>> Redhat Security Update Fixes Conga "ricci" Denial of Service Vulnerability
|
Title : Redhat Security Update Fixes Conga "ricci" Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-3968 CVE ID : CVE-2007-4136
Rated as : Low Risk 
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-11-22
|
A vulnerability has been identified in Redhat Cluster Suite EL4, which could be exploited by attackers to cause a denial of service. This issue is caused by an error in the ricci daemon in Conga when handling multiple simultaneous connections, which could be exploited by attackers to cause ricci to temporarily refuse additional connections, resulting in a denial of service.
Affected Products
Red Hat Cluster Suite EL4
Solution
Upgrade the affected packages :
https://rhn.redhat.com/
References
http://www.vupen.com/english/advisories/2007/3968 https://rhn.redhat.com/errata/RHSA-2007-0983.html
Credits
Vulnerability reported by the vendor.
ChangeLog
2007-11-22 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time e-mail and SMS alerts when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form. | |
|