CVE-2002-2254: Low severity Linux Linux kernel vulnerability
The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may allow a later process with the same Process ID (PID) to access certain network traffic that would otherwise be restricted.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable the experimental IP packet queuing feature in Netfilter/IPTables on systems running the affected kernels (Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31) to prevent a later process with the same PID from accessing queued network traffic.
Netfilter / IPTables IP packet queuing (experimental) = disabled
Event History
Frequently Asked Questions
What is the severity of CVE-2002-2254?
CVE-2002-2254 is classified as a medium severity vulnerability.
How do I fix CVE-2002-2254?
To mitigate CVE-2002-2254, upgrade to a patched version of the Linux kernel beyond 2.4.19 or 2.5.31.
What systems are affected by CVE-2002-2254?
CVE-2002-2254 affects the Linux kernel versions 2.4 and 2.5, specifically from 2.4.0 up to 2.4.19 and 2.5.0 up to 2.5.31.
Can CVE-2002-2254 lead to unauthorized access?
Yes, CVE-2002-2254 may allow unauthorized processes to access network traffic due to improper handling of processes.
What does CVE-2002-2254 involve?
CVE-2002-2254 involves a vulnerability in the IP packet queuing feature of Netfilter/IPTables in certain versions of the Linux kernel.