Mandriva Linux Security Advisory 2015-226

Discussion in 'News Aggregator' started by Packet Storm, 5 May 2015.

  1. Packet Storm

    Packet Storm Guest

    Mandriva Linux Security Advisory 2015-226 - FCGI does not perform range checks for file descriptors before use of the FD_SET macro. This FD_SET macro could allow for more than 1024 total file descriptors to be monitored in the closing state. This may allow remote attackers to cause a denial of service (stack memory corruption, and infinite loop or daemon crash) by opening many socket connections to the host and crashing the service.

    Continue reading...
     

Share This Page

Loading...