Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-27853

Опубликовано: 27 сент. 2021
Источник: redhat
CVSS3: 5.3

Описание

Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 headers and LLC/SNAP headers.

Отчет

Red Hat deems this to be a configuration issue. There is no vulnerability in the Linux kernel itself, there is a lot of ways to misuse the filtering facilities provided by the kernel and do insecure filtering rules, but you also have everything to actually set up secure rules.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernelNot affected
Red Hat Enterprise Linux 8kernel-rtNot affected
Red Hat Enterprise Linux 9kernelNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2010795kernel: layer 2 network filtering capabilities bypass

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
nvd
почти 4 года назад

Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 headers and LLC/SNAP headers.

CVSS3: 4.7
debian
почти 4 года назад

Layer 2 network filtering capabilities such as IPv6 RA guard or ARP in ...

CVSS3: 4.7
github
почти 4 года назад

Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 headers and LLC/SNAP headers.

CVSS3: 4.7
fstec
почти 4 года назад

Уязвимость реализации протокола инкапсуляции Ethernet, связанная с возможностью объединения заголовков, позволяющая нарушителю вызвать отказ в обслуживании или реализовать атаку «человек посередине» (MITM)

5.3 Medium

CVSS3