Back

MEDIUM

security flaw

Published Aug 5, 2003

Description

The connection tracking core of Netfilter for Linux 2.4.20, with CONFIG_IP_NF_CONNTRACK enabled or the ip_conntrack module loaded, allows remote attackers to cause a denial of service (resource consumption) due to an inconsistency with Linux 2.4.20's support of linked lists, which causes Netfilter to fail to identify connections with an UNCONFIRMED status and use large timeouts.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (0)

No CWE recorded.

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 5, 2003
Updated Aug 8, 2024
Reserved Apr 1, 2003
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date May 14, 2003