CVE-2012-2663 describes a flaw in iptables (versions up to 1.4.21) where TCP SYN+FIN packets could bypass firewall rules intended to block SYN packets. This vulnerability, affecting netfilter iptables, has a CVSS score of 7.5, indicating a high severity with network-based attacks possible without authentication, potentially leading to confidentiality, integrity, and availability impacts. While no active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB) is noted, and community discussion is minimal, the CVE-2012-6638 fix significantly mitigates its relevance.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.4.21CPE matchmatch criteria | cpe:2.3:a:netfilter:iptables:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.