First published: Tue Jan 09 2001(Updated: )
ppp utility in FreeBSD 4.1.1 and earlier does not properly restrict access as specified by the "nat deny_incoming" command, which allows remote attackers to connect to the target system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =4.1.1-stable | |
FreeBSD Kernel | =3.5.1 | |
FreeBSD Kernel | =4.1 | |
FreeBSD Kernel | =4.0 | |
FreeBSD Kernel | =3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1167 has a high severity due to its potential to allow unauthorized remote access to the affected FreeBSD systems.
To fix CVE-2000-1167, update your FreeBSD system to a version later than 4.1.1 and ensure proper configuration of the ppp utility.
CVE-2000-1167 affects FreeBSD versions 4.1.1 and earlier, including 4.0, 4.1, 3.5, and 3.5.1.
Exploit of CVE-2000-1167 can allow remote attackers to connect to the system, potentially leading to unauthorized access.
While CVE-2000-1167 is an older vulnerability, systems running the affected versions of FreeBSD may still be in use, warranting caution.