CVE-2005-2729: High severity Astaro Security Linux vulnerability
Published Aug 29, 2005
·Updated
The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows remote attackers to bypass firewall rules and connect to local services.
Affected Software
1 affected component
Astaro Security Linux=6.001
Event History
Aug 29, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2729?
CVE-2005-2729 is considered to have a medium severity level due to its potential for exposing local services through the HTTP proxy.
2
How do I fix CVE-2005-2729?
To fix CVE-2005-2729, ensure that all HTTP CONNECT requests are properly filtered and not allowed to reach localhost.
3
What systems are affected by CVE-2005-2729?
CVE-2005-2729 specifically affects Astaro Security Linux version 6.0.1.
4
What is the impact of CVE-2005-2729?
The impact of CVE-2005-2729 is that it allows remote attackers to bypass firewall rules and access local services.
5
Can CVE-2005-2729 be exploited remotely?
Yes, CVE-2005-2729 can be exploited remotely due to improper filtering of HTTP CONNECT requests by the proxy.