<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title><![CDATA[Linux Forum &mdash; Nesus scan выявление уязвимостей]]></title>
		<link>https://linuxforum.ru/viewtopic.php?id=35340</link>
		<atom:link href="https://linuxforum.ru/extern.php?action=feed&amp;tid=35340&amp;type=rss" rel="self" type="application/rss+xml" />
		<description><![CDATA[Недавние сообщения в теме «Nesus scan выявление уязвимостей».]]></description>
		<lastBuildDate>Fri, 27 Jun 2014 02:51:35 +0000</lastBuildDate>
		<generator>PunBB</generator>
		<item>
			<title><![CDATA[Nesus scan выявление уязвимостей]]></title>
			<link>https://linuxforum.ru/viewtopic.php?pid=414325#p414325</link>
			<description><![CDATA[<p>Помогите решить проблему. Вот что показывает nesus scan</p><div class="codebox"><pre><code>[b]0/udp
[/b]    11580 - Firewall UDP Packet Source Port 53 Ruleset Bypass     [-/+]
Synopsis
Firewall rulesets can be bypassed.
Description
It is possible to bypass the rules of the remote firewall by sending UDP packets with a source port equal to 53.

An attacker may use this flaw to inject UDP packets to the remote hosts, in spite of the presence of a firewall.
See Also
http://archives.neohapsis.com/archives/fulldisclosure/2003-q2/0352.html
http://www.nessus.org/u?4368bb37
Solution
Either contact the vendor for an update or review the firewall rules settings.
Risk Factor
High
CVSS Base Score
7.5 (CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
CVSS Temporal Score
6.4 (CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
References
BID     7436
BID     11237
CVE     CVE-2003-1491
CVE     CVE-2004-1473
XREF     OSVDB:10205
XREF     OSVDB:60212
XREF     CWE:94
XREF     CWE:16
Plugin Information:
Publication date: 2003/05/06, Modification date: 2014/05/26</code></pre></div>]]></description>
			<author><![CDATA[null@example.com (bitmaster)]]></author>
			<pubDate>Fri, 27 Jun 2014 02:51:35 +0000</pubDate>
			<guid>https://linuxforum.ru/viewtopic.php?pid=414325#p414325</guid>
		</item>
	</channel>
</rss>
