First published: Thu Aug 23 2001(Updated: )
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD FreeBSD | =4.1.1 | |
FreeBSD FreeBSD | =4.2 | |
FreeBSD FreeBSD | =4.3 | |
FreeBSD FreeBSD | >=4.1.1<=4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.