CVE-2001-0183: High severity FreeBSD FreeBSD vulnerability
ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag in a TCP packet, which makes the packet appear to be part of an established connection.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0183?
CVE-2001-0183 is considered a medium severity vulnerability as it allows remote attackers to bypass access restrictions.
How do I fix CVE-2001-0183?
To mitigate CVE-2001-0183, update your FreeBSD installation to a version later than 4.2 that includes the patch for this vulnerability.
What systems are affected by CVE-2001-0183?
CVE-2001-0183 affects FreeBSD versions 4.2 and earlier, including versions 3.0 to 4.1.1.
What type of attack is CVE-2001-0183 associated with?
CVE-2001-0183 is associated with TCP packet manipulation where attackers can set the ECE flag to bypass firewall rules.
Can CVE-2001-0183 be exploited remotely?
Yes, CVE-2001-0183 can be exploited remotely by attackers to gain unauthorized access.