PT-2004-3701 · Debian · Iptables
Faheem Mitha
·
Published
1970-01-01
·
Updated
2017-07-11
·
CVE-2004-0986
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
iptables versions prior to 1.2.11
Description
The issue concerns multiple vulnerabilities in the iptables package of the Debian GNU/Linux operating system. These vulnerabilities can be exploited remotely, potentially leading to breaches in confidentiality, integrity, and availability of protected information. Under certain conditions, iptables may not properly load the required modules at system startup, causing firewall rules to fail and leaving the system unprotected against remote attackers.
Recommendations
For versions prior to 1.2.11, update to version 1.2.11 or later to resolve the issue. As a temporary workaround, consider manually loading the required modules to ensure firewall rules are properly applied until a patch is available. Restrict access to the system from remote attackers to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iptables