FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

GNU gatekeeper -- denial of service

Affected packages
gatekeeper < 3.1

Details

VuXML ID 342176a8-f464-11e1-8bd8-0022156e8794
Discovery 2012-08-15
Entry 2012-09-01

Jan Willamowius reports:

GNU Gatekeeper before 3.1 does not limit the number of connections to the status port, which allows remote attackers to cause a denial of service (connection and thread consumption) via a large number of connections.

References

CVE Name CVE-2012-3534
URL http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-3534
URL http://www.gnugk.org/gnugk-3.1.html
URL http://www.openwall.com/lists/oss-security/2012/08/25/4