Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
extensions/libxt_tcp.c in iptables through 1.4.21 does not match TCP SYN+FIN packets in --syn rules, which might allow remote attackers to bypass intended firewall restrictions via crafted packets. NOTE: the CVE-2012-6638 fix makes this issue less relevant.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
iptables 输入验证错误漏洞
Vulnerability Description
iptables是应用软件netfilter开源的一个运行在用户空间的应用软件。通过控制Linux内核netfilter模块,来管理网络数据包的处理和转发。 iptables 1.4.21版本及之前版本存在输入验证错误漏洞,该漏洞源于程序没有匹配TCP SYN+FIN数据包。远程攻击者利用该漏洞通过特制的数据包绕过既定的防火墙限制。
CVSS Information
N/A
Vulnerability Type
N/A