CVE-2001-0851: Medium severity Caldera Openlinux Server vulnerability
Published Dec 6, 2001
·Updated
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
Affected Software
14 affected components
Caldera Openlinux Server=3.1
Caldera Openlinux Workstation=3.1
Linux Linux kernel=2.2.0
Caldera Openlinux Eserver=2.3.1
SUSE SuSE Linux=7.2
Linux Linux kernel=2.0
Linux Linux kernel=2.4.0
SUSE SuSE Linux=7.0
Caldera Openlinux Edesktop=2.4
SUSE SuSE Linux=7.1
SUSE SuSE Linux=6.3
SUSE SuSE Linux=6.4
SUSE SuSE Linux=7.3
Caldera OpenLinux=2.3
Remediation
Event History
Dec 6, 2001
CVE Published
05:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0851?
CVE-2001-0851 is considered a high-severity vulnerability as it allows remote attackers to bypass firewall rules.
2
How do I fix CVE-2001-0851?
To fix CVE-2001-0851, disable syncookies or upgrade to a patched version of the Linux kernel.
3
Which versions of the Linux kernel are affected by CVE-2001-0851?
CVE-2001-0851 affects Linux kernel versions 2.0, 2.2, and 2.4 if syncookies are enabled.
4
Can CVE-2001-0851 be exploited remotely?
Yes, CVE-2001-0851 can be exploited remotely by attackers who can guess the syncookie.
5
What systems are impacted by CVE-2001-0851?
CVE-2001-0851 impacts systems running SCO OpenLinux, Caldera OpenLinux, and various versions of SUSE Linux that utilize the affected kernel versions.