Re: ipfilter 3.4.28?

This is a discussion on Re: ipfilter 3.4.28? within the IPFilter forums, part of the System Security and Security Related category; On Thu, May 08, 2008 at 07:46:44AM +0800, Darren Reed wrote: > It depends on what you consider ...


Go Back   Usenet Forums > System Security and Security Related > IPFilter

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 5 Days Ago
Mordechai T. Abzug
 
Posts: n/a
Default Re: ipfilter 3.4.28?

On Thu, May 08, 2008 at 07:46:44AM +0800, Darren Reed wrote:

> It depends on what you consider a "security" problem...


I'd mostly be worried about a bug that could provide remote code
execution without authentication, provide an elevated level of
privilege, or cause a crash.

> ..for example, the non-fragmented logging problem (fixed in 3.4.34)
> might worry some


I can live with a logging problem.

> ..the fix for ipf_pullup() in 3.4.33 could be cause for concern about
> reliability


Reliability how? Any risk of something crashing?

> ..the ftp proxy fixes for .29 might be cause for concern if you use that


They had no ipnat.conf at all. When they told me that, I recommended
that they start using it for FTP active mode to work, but if that's a
problem, I'll just tell them to forget I said that.

Thanks!

- Morty
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 05:34 PM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0