CVE-1999-1047: High severity BSDI Gauntlet vulnerability

Published Oct 18, 1999
·
Updated

When BSDI patches for Gauntlet 5.0 BSDI are installed in a particular order, Gauntlet allows remote attackers to bypass firewall access restrictions, and does not log the activities.

Affected Software

1 affected component
BSDI Gauntlet=5.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Ensure firewall logging is enabled and that logs are being recorded and forwarded to a secure log server; verify that access attempts and firewall decisions are being logged.

    Network Associates Gauntlet Firewall logging = enabled
  2. Compensating control

    Restrict network access to the Gauntlet firewall (management interfaces and affected services) to trusted IP addresses using upstream ACLs or perimeter controls until patches have been correctly applied and verified.

  3. Operational

    Reinstall the BSDI patches for Gauntlet 5.0 in the correct order as specified by the vendor; verify after reinstallation that firewall access controls behave correctly and that logging is occurring.

  4. Operational

    Audit existing logs and network traffic for signs of access-restriction bypass and unlogged activity; investigate any suspicious findings and remediate impacted systems.

Event History

Oct 18, 1999
CVE Published
04:00 AM
Data Sourced
via NVD·04:00 AM
DescriptionSeverityAffected Software
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-1999-1047?

CVE-1999-1047 is considered a critical vulnerability due to the potential for unauthorized remote access.

2

How do I fix CVE-1999-1047?

To fix CVE-1999-1047, ensure that all patches for Gauntlet 5.0 BSDI are applied in the correct order.

3

What systems are affected by CVE-1999-1047?

CVE-1999-1047 affects systems running Gauntlet 5.0 on BSDI.

4

What type of attack does CVE-1999-1047 allow?

CVE-1999-1047 allows remote attackers to bypass firewall access restrictions.

5

Does CVE-1999-1047 log unauthorized activities?

CVE-1999-1047 does not log unauthorized activities, making detection difficult.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203