Darren Reed's vulnerability footprint centers on IPFilter, a widely deployed open-source packet filtering and network address translation utility found across Unix and Linux systems. The observed weaknesses cluster around memory-safety issues and boundary conditions inherent to low-level packet-processing code, with current severity and exploitation details shown alongside this summary.
The number and severity of CVEs published that impact products developed by Darren Reed over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2001-0402HIGH IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers to bypass access restrictions by sending fragmented packets | Jun 18, 2001 | 7.5 | 34 | NO | YES |
CVE-2002-1978HIGH IPFilter 3.1.1 through 3.4.28 allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates | Dec 31, 2002 | 7.5 | 24 | NO | NO |
CVE-2009-1476HIGH Buffer overflow in lib/load_http.c in ippool in Darren Reed IPFilter (aka IP Filter) 4.1.31 allows local users to gain privileges via vectors involving a long hostname in a URL. | May 26, 2009 | 7.2 | 18 | NO | NO |
CVE-1999-1244HIGH IPFilter 3.2.3 through 3.2.10 allows local users to modify arbitrary files via a symlink attack on the saved output file. | Apr 15, 1999 | 7.2 | 18 | NO | NO |
Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" rules, allows remote attackers to bypass access restrictions. | May 26, 2000 | 2.6 | 12 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Darren Reed.
Media articles that mention a CVE ID that affects a product developed by Darren Reed — matched by CVE ID, not by vendor name.