CVE-2013-4342
EPSS 6.4%
Description
xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by leveraging another vulnerability in a service.
How to fix CVE-2013-4342
To remediate CVE-2013-4342, upgrade the affected package to a fixed version below.
- Debian/xinetd—upgrade to 1:2.3.15-2 or later
Is CVE-2013-4342 being exploited?
Moderate — EPSS is 6.4%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1:2.3.15-2