PT-2004-3701 · Debian · Iptables

Faheem Mitha

·

Published

1970-01-01

·

Updated

2017-07-11

·

CVE-2004-0986

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions iptables versions prior to 1.2.11
Description The issue concerns multiple vulnerabilities in the iptables package of the Debian GNU/Linux operating system. These vulnerabilities can be exploited remotely, potentially leading to breaches in confidentiality, integrity, and availability of protected information. Under certain conditions, iptables may not properly load the required modules at system startup, causing firewall rules to fail and leaving the system unprotected against remote attackers.
Recommendations For versions prior to 1.2.11, update to version 1.2.11 or later to resolve the issue. As a temporary workaround, consider manually loading the required modules to ensure firewall rules are properly applied until a patch is available. Restrict access to the system from remote attackers to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-02897
BDU:2015-02898
CVE-2004-0986
DSA-580-1

Affected Products

Iptables