7.5

CVE-2005-2317

Shorewall 2.4.x before 2.4.1, 2.2.x before 2.2.5, and 2.0.x before 2.0.17, when MACLIST_TTL is greater than 0 or MACLIST_DISPOSITION is set to ACCEPT, allows remote attackers with an accepted MAC address to bypass other firewall rules or policies.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Shorewall ≫ Shorewall Version 2.0.0
Shorewall ≫ Shorewall Version 2.0.0a
Shorewall ≫ Shorewall Version 2.0.0b
Shorewall ≫ Shorewall Version 2.0.1
Shorewall ≫ Shorewall Version 2.0.2
Shorewall ≫ Shorewall Version 2.0.2a
Shorewall ≫ Shorewall Version 2.0.2b
Shorewall ≫ Shorewall Version 2.0.2c
Shorewall ≫ Shorewall Version 2.0.2d
Shorewall ≫ Shorewall Version 2.0.2e
Shorewall ≫ Shorewall Version 2.0.2f
Shorewall ≫ Shorewall Version 2.0.3
Shorewall ≫ Shorewall Version 2.0.3a
Shorewall ≫ Shorewall Version 2.0.3b
Shorewall ≫ Shorewall Version 2.0.3c
Shorewall ≫ Shorewall Version 2.0.4
Shorewall ≫ Shorewall Version 2.0.5
Shorewall ≫ Shorewall Version 2.0.6
Shorewall ≫ Shorewall Version 2.0.7
Shorewall ≫ Shorewall Version 2.0.8
Shorewall ≫ Shorewall Version 2.0.9
Shorewall ≫ Shorewall Version 2.0.10
Shorewall ≫ Shorewall Version 2.0.11
Shorewall ≫ Shorewall Version 2.0.12
Shorewall ≫ Shorewall Version 2.0.13
Shorewall ≫ Shorewall Version 2.0.14
Shorewall ≫ Shorewall Version 2.0.15
Shorewall ≫ Shorewall Version 2.0.16
Shorewall ≫ Shorewall Version 2.2.0
Shorewall ≫ Shorewall Version 2.2.1
Shorewall ≫ Shorewall Version 2.2.2
Shorewall ≫ Shorewall Version 2.2.3
Shorewall ≫ Shorewall Version 2.2.4
Shorewall ≫ Shorewall Version 2.4.0
Shorewall ≫ Shorewall Version 2.4.0_rc1
Shorewall ≫ Shorewall Version 2.4.0_rc2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.31% 0.811
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://seclists.org/lists/fulldisclosure/2005/Jul/0409.html
Patch
Vendor Advisory
http://secunia.com/advisories/16087
Patch
Vendor Advisory
http://secunia.com/advisories/17110
http://secunia.com/advisories/17113
http://shorewall.net/News.htm#20050717
Patch
Vendor Advisory
http://www.debian.org/security/2005/dsa-849
http://www.gentoo.org/security/en/glsa/glsa-200507-20.xml
http://www.securityfocus.com/bid/14292
http://www.ubuntu.com/usn/usn-197-1