iodine: authentication bypass
Package(s): | iodine | CVE #(s): | CVE-2014-4168 | ||||||||||||||||||||
Created: | June 23, 2014 | Updated: | August 18, 2014 | ||||||||||||||||||||
Description: | From the Debian advisory:
Oscar Reparaz discovered an authentication bypass vulnerability in iodine, a tool for tunneling IPv4 data through a DNS server. A remote attacker could provoke a server to accept the rest of the setup or also network traffic by exploiting this flaw. | ||||||||||||||||||||||
Alerts: |
|