CVE-2000-1066: Medium severity FreeBSD FreeBSD vulnerability
Published Nov 29, 2000
·Updated
The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.
Affected Software
5 affected components
FreeBSD FreeBSD=4.1.1-release
FreeBSD FreeBSD=4.1
FreeBSD FreeBSD=4.0
FreeBSD FreeBSD=4.1.1
FreeBSD FreeBSD=4.0-alpha
Remediation
Patch Available
Event History
Nov 29, 2000
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1066?
CVE-2000-1066 has a severity classification of high due to its ability to cause a denial of service.
2
How do I fix CVE-2000-1066?
To fix CVE-2000-1066, upgrade to a supported version of FreeBSD that is not affected by this vulnerability.
3
Which versions of FreeBSD are affected by CVE-2000-1066?
CVE-2000-1066 affects FreeBSD versions 4.1.1 and earlier, including 4.1 and 4.0.
4
What impact does CVE-2000-1066 have on system security?
CVE-2000-1066 allows remote attackers to exploit the getnameinfo function, resulting in a denial of service and potential system unavailability.
5
Can CVE-2000-1066 be exploited remotely?
Yes, CVE-2000-1066 can be exploited remotely through a specially crafted long DNS hostname.