Sophos Community
User
Site
Search
User
Toggle Mobile menu
Community & Product Forums
Blogs
Partners
Events & Webinars
Getting Started
Support Portal
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Device Encryption
Sophos Mobile
Network Security
Sophos Firewall
Sophos ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
Sophos NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
AI Solutions
Sophos AI
Services
Management platform
Sophos Professional Services
Sophos Central
Support Portal
Sophos Community log in
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Recognition program
Leaderboard
Products and Services
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Device Encryption
Sophos Mobile
Network Security
Sophos Firewall
ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
AI Solutions
Sophos AI
Services
Management platform
Sophos Professional Services
Sophos Central
Support Portal
Sophos Community log in
Blogs
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Partners
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting Started
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Recognition program
Leaderboard
Support Portal
UTM Firewall
General Discussion
Cve-2009-0065
Release Notes & News
Discussions
Recommended Reads
Members
Lifecycle and Migration
More
Cancel
New
UTM Firewall requires membership for participation - click to join
Thread Info
State
Not Answered
Locked
Locked
Replies
4 replies
Subscribers
3 subscribers
Views
1543 views
Users
0 members are here
Options
RSS
More
Cancel
Suggested
This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion
Cve-2009-0065
tonkun
over 16 years ago
Hi, Does the following vulnerabilities effect Astaro version 7.306?
Linux Kernel 'FWD-TSN' Chunk Remote Buffer Overflow Vulnerability
Regards,tonkun
This thread was automatically locked due to age.
Parents
0
SvenW
over 16 years ago
Our kernels are compiled without SCTP support at this time,
there is no risk for CVE-2009-0065.
Best regards
Sven Wurth
-------------------------------------------------------
Sven Wurth
Security Software Researcher
key-fp: 3194 3CC7 A2BC 4B4D 9976 6C20 90E5 6A53 AF6B
-------------------------------------------------------
Cancel
Vote Up
0
Vote Down
Cancel
Reply
0
SvenW
over 16 years ago
Our kernels are compiled without SCTP support at this time,
there is no risk for CVE-2009-0065.
Best regards
Sven Wurth
-------------------------------------------------------
Sven Wurth
Security Software Researcher
key-fp: 3194 3CC7 A2BC 4B4D 9976 6C20 90E5 6A53 AF6B
-------------------------------------------------------
Cancel
Vote Up
0
Vote Down
Cancel
Children
0
tonkun
over 16 years ago
in reply to
SvenW
Thank you for the reply. I am so relieved.
Regards,tonkun
Cancel
Vote Up
0
Vote Down
Cancel
0
BarryG
over 16 years ago
in reply to
SvenW
What about protecting servers behind Astaro?
Since SCTP is a unique protocol, I'm assuming by default, Astaro would drop any inbound SCTP packets, right?
Thanks,
Barry
Cancel
Vote Up
0
Vote Down
Cancel
0
AlanT_01
over 16 years ago
in reply to
BarryG
Correct, Barry.
Astaro could forward SCTP traffic, but this would require creating a new protocol srevice definition, and NAT/packetfilter rules to allow it. By default it will be dropped.
Cancel
Vote Up
0
Vote Down
Cancel