[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2002-0060Date: (C)2002-03-08   (M)2023-12-22


IRC connection tracking helper module in the netfilter subsystem for Linux 2.4.18-pre9 and earlier does not properly set the mask for conntrack expectations for incoming DCC connections, which could allow remote attackers to bypass intended firewall restrictions.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
http://marc.info/?l=vuln-dev&m=101486352429653&w=2
http://marc.info/?l=bugtraq&m=101483396412051&w=2
BID-4188
HPSBUX0203-027
MDKSA-2002:041
RHSA-2002:028
VU#230307
http://www.netfilter.org/security/2002-02-25-irc-dcc-mask.html
linux-dcc-port-access(8302)

CPE    1
cpe:/o:linux:linux_kernel:2.4.18:pre9

© SecPod Technologies