Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users machines is of utmost
importance to us. Any security concerns should be addressed to
security (at) gentoo (dot) org [email concealed] or alternatively, you may file a bug at
http://bugs.gentoo.org.
License
=======
Copyright 2007 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
Gentoo Linux Security Advisory GLSA 200702-05
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
Title: Fail2ban: Denial of Service
Date: February 16, 2007
Bugs: #157166
ID: 200702-05
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
========
A flaw in Fail2ban may allow remote attackers to deny access to
arbitrary hosts.
Background
==========
Fail2ban monitors log files for failed authentication attempts and can
block hosts responsible for repeated attacks.
Affected packages
=================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-analyzer/fail2ban < 0.6.2 >= 0.6.2
Description
===========
A flaw in the method used to parse log entries allows remote,
unauthenticated attackers to forge authentication attempts from other
hosts.
Impact
======
A remote attacker can add arbitrary hosts to the block list, denying
legitimate users access to a resource.
Workaround
==========
There is no known workaround at this time.
Resolution
==========
All Fail2ban users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=net-analyzer/fail2ban-0.6.2"
References
==========
[ 1 ] CVE-2006-6302
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6302
Availability
============
This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:
http://security.gentoo.org/glsa/glsa-200702-05.xml
Concerns?
=========
Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users machines is of utmost
importance to us. Any security concerns should be addressed to
security (at) gentoo (dot) org [email concealed] or alternatively, you may file a bug at
http://bugs.gentoo.org.
License
=======
Copyright 2007 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
http://creativecommons.org/licenses/by-sa/2.5
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iQEVAwUBRdT9PzvRww8BFPxFAQKYBwf/cC5hPoDIlxnpo024wAqQvTXQtVTry3Zd
Ou7SbTVwPM76i1DPN5f69+RxTAxC2fHjePAFXMV8QBkaQ53z7hTpYml2VF6m2XfW
4RGEERASnj903zxbsAbbME6Czv14vXrHHnz6yaEbw9fhyD8Nx2Sx3SOydWzWwKUY
BtBbBiO7KPBCezf1IyTrrGhyi3F95n766vocyeCGREy/r8V4p4mPIVdvHCs/2weZ
O7W4Zx9GWx0AQZI7itGZ6pOS0LBzlgFRvIP6JaMKjQDCF7IHByF9BG2kVeeQP+sP
9vOW2S4f0Dk2FUY4y4vpaFRPKeBtWT7HeaLQ2X6wlHzMC4MjPKLQZQ==
=KKwV
-----END PGP SIGNATURE-----
[ reply ]