CVE-2013-4342

Priority
Description
xinetd does not enforce the user and group configuration directives for
TCPMUX services, which causes these services to be run as root and makes it
easier for remote attackers to gain privileges by leveraging another
vulnerability in a service.
Notes
Package
Upstream:released (1:2.3.15-2)
Ubuntu 12.04 ESM (Precise Pangolin):needed
Ubuntu 14.04 ESM (Trusty Tahr):not-affected (1:2.3.15-3ubuntu1)
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (1:2.3.15-6)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (1:2.3.15-3ubuntu1)
Ubuntu 19.04 (Disco Dingo):not-affected (1:2.3.15-3ubuntu1)
Ubuntu 19.10 (Eoan Ermine):not-affected (1:2.3.15-3ubuntu1)
Ubuntu 20.04 (Focal Fossa):not-affected (1:2.3.15-3ubuntu1)
Patches:
Vendor:https://rhn.redhat.com/errata/RHSA-2013-1409.html
Other:https://github.com/xinetd-org/xinetd/pull/10/files
More Information

Updated: 2019-12-05 19:18:18 UTC (commit 0aa5e7c87c8b55d2ec5c7f4ca1179cf75de91961)