Red Hat Network has determined that the following advisory is applicable to
one or more of the systems you have registered:
Complete information about this errata can be found at the following location:
https://rhn.redhat.com/network/errata/errata_details.pxt?eid=1250
Security Advisory - RHSA-2002:196-09
------------------------------------------------------------------------------
Summary:
Updated xinetd packages fix denial of service vulnerability
Xinetd contains a denial-of-service (DoS) vulnerability.
Description:
Xinetd is a secure replacement for inetd, the Internet services daemon.
Versions 2.3.4 through 2.3.7 of Xinetd leak file descriptors for the signal
pipe to services that are launched by xinetd. This could allow an attacker
to execute a DoS attack via the pipe.
Red Hat Linux 7.3 shipped with xinetd version 2.3.4 and is therefore
vulnerable to this issue. All users are advised to upgrade to the errata
packages containing xinetd version 2.3.9 which is not vulnerable to this issue.