Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3773

Опубликовано: 16 фев. 2022
Источник: debian
EPSS Низкий

Описание

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

Примечания

  • https://www.openwall.com/lists/oss-security/2021/09/08/3

  • https://breakpointingbad.com/2021/09/08/Port-Shadows-via-Network-Alchemy.html

  • https://bugzilla.suse.com/show_bug.cgi?id=1189897

  • No code changes necessary/needed, firewall rules are reponsibility of local admin

EPSS

Процентиль: 62%
0.00441
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

CVSS3: 5.9
redhat
почти 4 года назад

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

CVSS3: 9.8
nvd
больше 3 лет назад

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

CVSS3: 9.8
github
больше 3 лет назад

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

rocky
около 3 лет назад

Important: kernel security, bug fix, and enhancement update

EPSS

Процентиль: 62%
0.00441
Низкий