Oval Definition:
oval:org.mitre.oval:def:380
Revision Date
:
2007-04-25
Version
:
18
Title
:
Insecure Design of the STP Protocol
Description
:
The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0550
Platform(s)
:
Red Hat Linux 9
Product(s)
:
Linux kernel
Definition Synopsis
Red Hat 9 is installed
AND
ix86 architecture
AND
kernel version is less than 2.4.20-19.9
BACK