<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<title type="html"><![CDATA[Linux Forum &mdash; Nesus scan выявление уязвимостей]]></title>
	<link rel="self" href="https://linuxforum.ru/extern.php?action=feed&amp;tid=35340&amp;type=atom" />
	<updated>2014-06-27T02:51:35Z</updated>
	<generator>PunBB</generator>
	<id>https://linuxforum.ru/viewtopic.php?id=35340</id>
		<entry>
			<title type="html"><![CDATA[Nesus scan выявление уязвимостей]]></title>
			<link rel="alternate" href="https://linuxforum.ru/viewtopic.php?pid=414325#p414325" />
			<content type="html"><![CDATA[<p>Помогите решить проблему. Вот что показывает nesus scan</p><div class="codebox"><pre><code>[b]0/udp
[/b]    11580 - Firewall UDP Packet Source Port 53 Ruleset Bypass     [-/+]
Synopsis
Firewall rulesets can be bypassed.
Description
It is possible to bypass the rules of the remote firewall by sending UDP packets with a source port equal to 53.

An attacker may use this flaw to inject UDP packets to the remote hosts, in spite of the presence of a firewall.
See Also
http://archives.neohapsis.com/archives/fulldisclosure/2003-q2/0352.html
http://www.nessus.org/u?4368bb37
Solution
Either contact the vendor for an update or review the firewall rules settings.
Risk Factor
High
CVSS Base Score
7.5 (CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
CVSS Temporal Score
6.4 (CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
References
BID     7436
BID     11237
CVE     CVE-2003-1491
CVE     CVE-2004-1473
XREF     OSVDB:10205
XREF     OSVDB:60212
XREF     CWE:94
XREF     CWE:16
Plugin Information:
Publication date: 2003/05/06, Modification date: 2014/05/26</code></pre></div>]]></content>
			<author>
				<name><![CDATA[bitmaster]]></name>
				<uri>https://linuxforum.ru/profile.php?id=33944</uri>
			</author>
			<updated>2014-06-27T02:51:35Z</updated>
			<id>https://linuxforum.ru/viewtopic.php?pid=414325#p414325</id>
		</entry>
</feed>
