Описание
firewalls might let some TCP flags combinations pass (e.g. all with RST flag set) and the OS (e.g. Linux) stack would in turn accept a TCP session it might not have accepted otherwise.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.4.20 |
| hardy | not-affected | 2.4.20 |
| lucid | not-affected | 2.4.20 |
| natty | not-affected | 2.4.20 |
| oneiric | not-affected | 2.4.20 |
| precise | not-affected | 2.4.20 |
| upstream | released | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.4.20 |
| hardy | DNE | |
| lucid | DNE | |
| natty | DNE | |
| oneiric | DNE | |
| precise | not-affected | 2.4.20 |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | not-affected | 2.4.20 |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | ignored | end of life |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | ignored | abandoned |
| hardy | DNE | |
| lucid | DNE | |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | ignored | end of life |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | ignored | abandoned |
| hardy | DNE | |
| lucid | DNE | |
| natty | DNE | |
| oneiric | ignored | end of life |
| precise | ignored | end of life |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | ignored | abandoned |
| hardy | DNE | |
| lucid | DNE | |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | ignored | end of life |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | ignored | end of life |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | not-affected | 2.4.20 |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | not-affected | 2.4.20 |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | DNE | |
| lucid | ignored | end of life |
| natty | DNE | |
| oneiric | DNE | |
| precise | DNE | |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | ignored | abandoned |
| hardy | DNE | |
| lucid | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | ignored | end of life |
| upstream | not-affected | 2.4.20 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 2.4.20 |
| hardy | DNE | |
| lucid | DNE | |
| natty | not-affected | 2.4.20 |
| oneiric | not-affected | 2.4.20 |
| precise | not-affected | 2.4.20 |
| upstream | not-affected | 2.4.20 |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
TCP firewalls could be circumvented by sending a SYN Packets with other flags (like e.g. RST flag) set, which was not correctly discarded by the Linux TCP stack after firewalling.
TCP firewalls could be circumvented by sending a SYN Packets with other flags (like e.g. RST flag) set, which was not correctly discarded by the Linux TCP stack after firewalling.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3