TCP firewalls could be circumvented by sending a SYN Packets with other flags (like e.g. RST flag) set, which was not correctly discarded by the Linux TCP stack after firewalling.
References
Configurations
History
20 Nov 2024, 23:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.openwall.com/lists/oss-security/2012/02/03/7 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/29/8 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/11 - Exploit, Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/12 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/13 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/2 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/4 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/8 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/30/9 - Mailing List, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2012/05/31/3 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.openwall.com/lists/oss-security/2014/02/12/8 - Mailing List, Third Party Advisory | |
References | () https://bugzilla.suse.com/show_bug.cgi?id=744994%2C - | |
References | () https://security.netapp.com/advisory/ntap-20210727-0003/ - | |
References | () https://www.kb.cert.org/vuls/id/464113 - Third Party Advisory, US Government Resource | |
References | () https://www.kb.cert.org/vuls/id/464113%2C - | |
References | () https://www.openwall.com/lists/oss-security/2012/02/03/7 - Mailing List, Patch, Third Party Advisory |
Information
Published : 2021-05-18 12:15
Updated : 2024-11-20 23:43
NVD link : CVE-2002-2438
Mitre link : CVE-2002-2438
CVE.ORG link : CVE-2002-2438
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-287
Improper Authentication