Arno's IPTABLES firewall scripts cannot detect IPv6 communication Vulnerabilities
Released on: 2010-09-01
Updated on: 2010-09-02
Affected Systems:
Arno van Amersfoort Arno's IPTABLES <1.9.2l
Unaffected system:
Arno van Amersfoort Arno's IPTABLES 1.9.2l
Description:
--------------------------------------------------------------------------------
Bugtraq id: 42909
Arno's IPTABLES is a firewall script used on the Linux platform.
The Arno's IPTABLES script contains ipv6 support. IPv6 is disabled by default and cannot be enabled when ipv4 support is enabled. Therefore, ipv6 packets may not be detected.
<* Source: Tim Small (tim@seoss.co.uk)
Link: http://secunia.com/advisories/41207/
Http://bugs.debian.org/cgi-bin/bugreport.cgi? Bug = 594326
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Arno van Amersfoort
-------------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://rocky.eld.leidenuniv.nl/pipermail/firewall/2010-August/001749.html