First published: Tue Jan 09 2001(Updated: )
telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service by specifying an arbitrary large file in the TERMCAP environmental variable, which consumes resources as the server processes the file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =4.1 | |
FreeBSD Kernel | =3.5.1-stable | |
FreeBSD Kernel | =3.0 | |
FreeBSD Kernel | =4.0 | |
FreeBSD Kernel | =4.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1184 is classified as a denial of service vulnerability.
To fix CVE-2000-1184, upgrade to a version of FreeBSD that is newer than 4.2.
CVE-2000-1184 affects FreeBSD 4.2 and earlier versions along with potentially other operating systems.
Yes, CVE-2000-1184 allows remote attackers to exploit the vulnerability.
CVE-2000-1184 exploits telnetd by allowing attackers to specify an arbitrarily large file in the TERMCAP environmental variable.