CVE-2004-2251: Medium severity Astaro Security Linux vulnerability
Published Dec 31, 2004
·Updated
The PPTP server in Astaro Security Linux before 4.024 provides information about its version, which makes it easier for remote attackers to construct specialized attacks.
Affected Software
7 affected components
Astaro Security Linux=4.020
Astaro Security Linux=4.023
Astaro Security Linux=4.022
Astaro Security Linux=4.017
Astaro Security Linux=4.019
Astaro Security Linux=4.018
Astaro Security Linux=4.021
Remediation
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Jul 17, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2251?
CVE-2004-2251 is considered to have a low severity level as it primarily exposes version information that may aid attackers.
2
How do I fix CVE-2004-2251?
To fix CVE-2004-2251, upgrade the Astaro Security Linux to a version later than 4.024, which resolves the vulnerability.
3
Which versions of Astaro Security Linux are affected by CVE-2004-2251?
CVE-2004-2251 affects Astaro Security Linux versions 4.017 through 4.023.
4
What type of attack can be facilitated by CVE-2004-2251?
CVE-2004-2251 allows attackers to craft more effective targeted attacks based on the disclosed version information of the PPTP server.
5
Is there a workaround for CVE-2004-2251 if I cannot upgrade?
There are no documented workarounds for CVE-2004-2251; upgrading to a secure version is recommended.