CVE Vulnerabilities

CVE-2001-0405

Published: Jul 02, 2001 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewall.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux 2.4.0 2.4.0
Linux_kernel Linux 2.4.0 2.4.0
Linux_kernel Linux 2.4.2 2.4.2
Linux_kernel Linux 2.4.3 2.4.3
Linux_kernel Linux 2.4.1 2.4.1

References