|
OpenBSD 2.7: ipf vulnerability |
|
|
|
Posted by LinuxSecurity.com Team
|
A misuse of ipf(8) keep-state rules can result in firewall rules being bypassed.
A misuse of ipf(8) keep-state rules can result in firewall rules being bypassed. This patch also includes fixes for an unaligned timestamp issue, and reliability fixes for ipmon and the in-kernel ftp proxy. A jumbo patch exists, which remedies this problem, and updates ipf to version 3.3.16.The patch is available on the OpenBSD site at: ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/001_ipf.patch
|