IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
BID:14193
Info
IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
| Bugtraq ID: | 14193 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 08 2005 12:00AM |
| Updated: | Jul 08 2005 12:00AM |
| Credit: | Discovery is credited to Matt Mello and IBM. |
| Vulnerable: |
IBM AIX 5.3 IBM AIX 5.2 IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
A remote denial of service vulnerability has been reported in the IBM AIX FTP server implementation. A remote authenticated FTP user may exhaust all available ephemeral network ports on the computer.
Exploitation of this vulnerability could result in a denial of service as no new connections can be initiated on ephemeral ports. In addition, system resources could be impacted if all of these ports are in use.
A remote denial of service vulnerability has been reported in the IBM AIX FTP server implementation. A remote authenticated FTP user may exhaust all available ephemeral network ports on the computer.
Exploitation of this vulnerability could result in a denial of service as no new connections can be initiated on ephemeral ports. In addition, system resources could be impacted if all of these ports are in use.
Exploit / POC
IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
Solution:
IBM has released interim fixes to address vulnerability. APARs are pending release. Please refer to the IBM advisory for further details.
IBM has updated their advisory stating APARs are now available. Please see the referenced advisory for more information.
IBM AIX 5.1
IBM AIX 5.2
IBM AIX 5.3
Solution:
IBM has released interim fixes to address vulnerability. APARs are pending release. Please refer to the IBM advisory for further details.
IBM has updated their advisory stating APARs are now available. Please see the referenced advisory for more information.
IBM AIX 5.1
-
IBM IY73498
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM ftpd_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/ftpd_ifix.tar.Z
IBM AIX 5.2
-
IBM IY72942
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM ftpd_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/ftpd_ifix.tar.Z
IBM AIX 5.3
-
IBM IY73497
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM ftpd_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/ftpd_ifix.tar.Z
References
IBM AIX FTP Ephemeral Port Exhaustion Denial Of Service Vulnerability
References:
References:
- Vulnerability Note VU#118125 (US-CERT)