An issue was found in the Linux kernel in nf_conntrack_irc where the message handling can be confused and incorrectly matches the message. …
An issue was found in the Linux kernel in nf_conntrack_irc where the message handling can be confused and incorrectly matches the message. A firewall may be able to be bypassed when users are using unencrypted IRC with nf_conntrack_irc configured.
The product establishes a communication channel to (or from) an endpoint for privileged or protected operations, but it does not properly ensure that it is communicating with the correct endpoint.
https://cwe.mitre.org/data/definitions/923.html →Open in CWE collection →An attacker exploits characteristics of the infrastructure of a network entity in order to perpetrate attacks or information gathering on network objects or effect a change in the ordinary information flow between network objects. Most often, this involves manipulation of the routing of network messages so, instead of arriving at their proper destination, they are directed towards an entity of the attackers' choosing, usually a server controlled by the attacker. The victim is often unaware that their messages are not being processed correctly. For example, a targeted client may believe they are connecting to their own bank but, in fact, be connecting to a Pharming site controlled by the attacker which then collects the user's login information in order to hijack the actual bank account.
https://capec.mitre.org/data/definitions/161.html →Open in CAPEC collection →Adversaries can provide contradictory destinations when sending messages. Traffic is routed in networks using the domain names in various headers available at different levels of the OSI model. In a Content Delivery Network (CDN) multiple domains might be available, and if there are contradictory domain names provided it is possible to route traffic to an inappropriate destination. The technique, called Domain Fronting, involves using different domain names in the SNI field of the TLS header and the Host field of the HTTP header. An alternative technique, called Domainless Fronting, is similar, but the SNI field is left blank.
https://capec.mitre.org/data/definitions/481.html →Open in CAPEC collection →An adversary intercepts an implicit intent sent to launch a Android-based trusted activity and instead launches a counterfeit activity in its place. The malicious activity is then used to mimic the trusted activity's user interface and prompt the target to enter sensitive data as if they were interacting with the trusted activity.
https://capec.mitre.org/data/definitions/501.html →Open in CAPEC collection →https://capec.mitre.org/data/definitions/697.html →Open in CAPEC collection →
| Product | Vendor | Status |
|---|---|---|
| kernel | Tracked | |
| kernel | Tracked | |
| kernel | Tracked | |
| kernel | Tracked | |
| kernel | Tracked | |
| kernel-headers-centos | Tracked | |
| kernel-headers-modules-centos | Tracked | |
| kernel-image-centos | Tracked | |
| kernel-modules-alsa-centos | Tracked | |
| kernel-modules-drm-centos | Tracked | |
| kernel-modules-media-centos | Tracked | |
| kernel-rt | Tracked | |
| kernel-rt | Tracked | |
| linux | Tracked | |
| linux | Tracked | |
| linux | Tracked | |
| linux | Tracked | |
| linux | Tracked | |
| linux | Tracked | |
| linux | Tracked |