CVE-2000-0374: Critical severity caldera openlinux vulnerability
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable XDMCP in the kdm configuration to prevent accepting XDMCP connections from any host.
kdm (KDE Display Manager) on SCO OpenLinux Server XDMCP enabled = false - Configuration
Configure kdm to accept XDMCP connections only from an explicit list of trusted hosts or networks (restrict allowed hosts/networks in the kdm configuration).
kdm (KDE Display Manager) on SCO OpenLinux Server XDMCP allowed hosts = trusted-hosts-only - Compensating control
Restrict or block XDMCP (UDP port 177) at network boundaries or host firewalls so only trusted IPs/networks can reach the display manager.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0374?
CVE-2000-0374 is considered a moderate severity vulnerability due to its potential for unauthorized access to sensitive information.
How can I fix CVE-2000-0374?
To fix CVE-2000-0374, configure the kdm settings to restrict XDMCP connections to trusted hosts only.
What systems are affected by CVE-2000-0374?
CVE-2000-0374 affects default configurations of kdm in Caldera and Mandrake Linux versions 2.2 and 2.3.
What risks does CVE-2000-0374 pose?
CVE-2000-0374 allows remote attackers to obtain sensitive information or bypass access restrictions, leading to potential data exposure.
Is CVE-2000-0374 a widespread vulnerability?
CVE-2000-0374 may not be widespread today, but its presence in legacy systems can pose a security risk if not addressed.