PT-2004-2699 · Openbsd · Openbsd

Darren Reed

·

Published

2004-12-31

·

Updated

2016-10-18

·

CVE-2004-1799

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions OpenBSD (affected versions not specified)
Description The issue allows remote attackers to bypass intended packet filters via spoofed packets to other interfaces when stateful filtering is enabled. This occurs because the PF in certain OpenBSD versions does not limit packets for a session to the original interface.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1799

Affected Products

Openbsd