Release date:
Updated on:
Affected Systems:
Pfsense 2.x
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2011-4109, CVE-2011-4576, CVE-2011-4619, CVE-2012-0217, CVE-2012-0884, CVE-2012-2110
PfSense is an open source firewall.
In versions earlier than pfSense 2.0.2, security vulnerabilities exist. Malicious attackers can exploit these vulnerabilities to escalate permissions, obtain sensitive information, initiate Denial-of-service attacks, and even destroy applications.
<* Source: vendor
Link: http://secunia.com/advisories/51674/
Http://www.securelist.com/en/advisories/51674
Http://blog.pfsense.org /? P = 676
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Pfsense
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://blog.pfsense.org /? P = 676