First published: Mon Dec 11 2000(Updated: )
The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =4.1.1-release | |
FreeBSD Kernel | =4.1 | |
FreeBSD Kernel | =4.0 | |
FreeBSD Kernel | =4.1.1 | |
FreeBSD Kernel | =4.0-alpha |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1066 has a severity classification of high due to its ability to cause a denial of service.
To fix CVE-2000-1066, upgrade to a supported version of FreeBSD that is not affected by this vulnerability.
CVE-2000-1066 affects FreeBSD versions 4.1.1 and earlier, including 4.1 and 4.0.
CVE-2000-1066 allows remote attackers to exploit the getnameinfo function, resulting in a denial of service and potential system unavailability.
Yes, CVE-2000-1066 can be exploited remotely through a specially crafted long DNS hostname.