Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0969

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2001-0969
Last Modified 05 Sep 2008 04:25:21
Published 31 Aug 2001 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0969

Summary

ipfw in FreeBSD does not properly handle the use of "me" in its rules when point to point interfaces are used, which causes ipfw to allow connections from arbitrary remote hosts.

Vulnerable Systems

Operating System

  • Freebsd 4.3


References

XF - ipfw-me-unauthorized-access(7002)

BID - 3206

FREEBSD - FreeBSD-SA-01:53

OSVDB - 1937


Last Updated: 27 May 2016 10:36:28