CVE-2007-4601

CWE-26410 documents9 sources
Severity
5.0MEDIUM
EPSS
0.5%
top 34.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 30
Latest updateMay 1

Description

A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access restrictions when a service uses libwrap but does not specify server connection information.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

Debiantcp-wrappers< 7.6.dbs-12+3

Also affects: Ubuntu Linux 7.04

Patches

🔴Vulnerability Details

3
GHSA
GHSA-36v6-mp2g-5c58: A regression error in tcp-wrappers 72022-05-01
CVEList
CVE-2007-4601: A regression error in tcp-wrappers 72007-08-30
OSV
CVE-2007-4601: A regression error in tcp-wrappers 72007-08-30

💥Exploits & PoCs

2
Exploit-DB
Ubuntu 6.06 - DHCPd Remote Denial of Service2007-11-02
Exploit-DB
X-ice News System 1.0 - 'devami.asp?id' SQL Injection2007-03-13

📋Vendor Advisories

3
Ubuntu
tcp-wrappers vulnerability2007-08-29
Red Hat
libwrap ignores rules under certain circumstances2007-02-02
Debian
CVE-2007-4601: tcp-wrappers - A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote ...2007

💬Community

1
Bugzilla
CVE-2007-4601 libwrap ignores rules under certain circumstances2007-08-31