Fw: Vulnerabilidad kernel 2.6 + iptables
----- Original Message ----- Sent: Monday, October 25, 2004 11:45 PM Subject: Vulenerabilidad kernel 2.6 + iptables
USERS OF Linux running a 2.6 series kernel and using iptables for
firewalling
have been advised to upgrade to fix a bug which could be exploited remotely to cause a denial of service. The bug, discovered by Richard Hart, does not affect the 2.4 series kernel or the later version. It is caused by an integer underflow problem in the iptables firewall logging rules. This means that a hacker could remotely crash the machine by using a specially designed IP packet. Ironically, they can only do this if a firewall is enabled in the kernel.
El 2004-10-27 a las 23:53 +0200, secobau escribió:
----- Original Message ----- Sent: Monday, October 25, 2004 11:45 PM Subject: Vulenerabilidad kernel 2.6 + iptables
USERS OF Linux running a 2.6 series kernel and using iptables for firewalling have been advised to upgrade to fix a bug which could be exploited remotely to cause a denial of service. The bug, discovered by Richard Hart, does
Esto ya ha sido parcheado por suse (SUSE-SA:2004:037) el 21 Oct, o sea, 4 dias antes de ese anuncio ;-) En 9.1, actualiza con YOU. Es el kernel 2.6.5-7.111. -- Saludos Carlos Robinson
participants (2)
-
Carlos E. R.
-
secobau