Back to Security Advisories

Security Advisory: CSF Firewall Port Rule Race Condition

Under heavy connection churn, CSF may briefly drop an active port rule before the reload completes, exposing SSH briefly on default configurations.

Low
CSF AlmaLinux 8 AlmaLinux 9 CentOS 7 CloudLinux 7 CloudLinux 8 CloudLinux 9

Affected Versions

CSF 14.20 and earlier

Patched Version

CSF 14.21

Default Update CMD

yum update -y

Fix Commands

AlmaLinux 9 / CloudLinux 9

cd /etc/csf
csf -u
csf -r

AlmaLinux 8 / CloudLinux 8

cd /etc/csf
csf -u
csf -r

CentOS 7 / CloudLinux 7

cd /etc/csf
csf -u
csf -r

Check your system for vulnerabilities

Selecciona tu producto y sistema operativo para ver los comandos de corrección exactos que se aplican a ti.

Check Your System