Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
net/netfilter/nf_conntrack_proto_generic.c in the Linux kernel before 3.18 generates incorrect conntrack entries during handling of certain iptables rule sets for the SCTP, DCCP, GRE, and UDP-Lite protocols, which allows remote attackers to bypass intended access restrictions via packets with disallowed port numbers.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linux kernel 安全绕过漏洞
Vulnerability Description
Linux kernel是美国Linux基金会发布的开源操作系统Linux所使用的内核。NFSv4 implementation是其中的一个分布式文件系统协议。 Linux kernel 3.18之前版本的net/netfilter/nf_conntrack_proto_generic.c文件中存在安全漏洞,该漏洞源于程序处理SCTP、DCCP、GRE和UDP-Lite协议的iptable防火墙规则设置时,生成错误的conntrack条目。远程攻击者可借助带有禁用端口号的数据包利用该漏洞绕过既定的访问限制
CVSS Information
N/A
Vulnerability Type
N/A