IRC connection tracking helper module in the netfilter subsystem for Linux 2.4.18-pre9 and earlier does not properly set the mask for conntrack expectations for incoming DCC connections, which could allow remote attackers to bypass intended firewall restrictions.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/230307 | third party advisory us government resource |
http://www.netfilter.org/security/2002-02-25-irc-dcc-mask.html | patch vendor advisory |
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0203-027 | vendor advisory |
http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:041 | vendor advisory |
http://marc.info/?l=vuln-dev&m=101486352429653&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=101483396412051&w=2 | mailing list |
http://www.redhat.com/support/errata/RHSA-2002-028.html | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/8302 | vdb entry |
http://www.securityfocus.com/bid/4188 | vdb entry |