CVE
- Id
- 4190
- CVE No.
- CVE-2001-1387
- Status
- Candidate
- Description
- iptables-save in iptables before 1.2.4 records the "--reject-with icmp-host-prohibited" rule as "--reject-with tcp-reset," which causes iptables to generate different responses than specified by the administrator, possibly leading to an information leak.
- Phase
- Proposed (20020830)
- Votes
- ACCEPT(6) Armstrong, Baker, Cole, Cox, Green, Wall | MODIFY(1) Frech | NOOP(1) Foat
- Comments
- Frech> XF:iptables-iptablessave-information-leak(11116) | XF:iptables-save-files-option(7489)