>> Fail2ban Log Messages Parsing Block List Manipulation Denial of Service Vulnerability
Title : Fail2ban Log Messages Parsing Block List Manipulation Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2006-4877 CVE ID : CVE-2006-6302
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-12-06
Technical Description
A vulnerability has been identified in Fail2ban, which could be exploited by attackers to cause a denial of service. This issue is due to an error when parsing log messages, which could be exploited by remote attackers to add arbitrary hosts to the block list and deny access from certain IPs, creating a denial of service condition.