CNCVE编号:CNCVE-20010402 CVE编号:CVE-2001-0402 安全级别:中 漏洞中文描述: IPFilter 3.4.16及其早期版本在它的高速缓冲区里包括足够的会话信息,这允许远程攻击者通过发送碎片包到受限的端口来绕过访问限制。 漏洞英文描述: IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers to bypass access restrictions by sending fragmented packets to a restricted port. 漏洞参考: BUGTRAQ:20010408 A fragmentation attack against IP Filter URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98679734015538&w=2 FREEBSD:FreeBSD-SA-01:32 URL:http://archives.neohapsis.com/archives/freebsd/2001-04/0338.html 系统类型:其他 漏洞类型:权限有效性检查错误