CVE-2001-1359: Critical severity Caldera Volution vulnerability
Published Jun 8, 2001
·Updated
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution server.
Affected Software
3 affected components
Caldera Volution=1.0
Caldera Volution=1.0.6
Caldera Volution=1.0.7
Remediation
Patch Available
Event History
Jun 8, 2001
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1359?
CVE-2001-1359 is classified as a critical vulnerability due to the potential for remote attackers to gain full control over affected clients.
2
How do I fix CVE-2001-1359?
To fix CVE-2001-1359, upgrade to a version of Caldera Volution that is later than 1.0.7.
3
What versions of Caldera Volution are affected by CVE-2001-1359?
CVE-2001-1359 affects Caldera Volution versions 1.0, 1.0.6, and 1.0.7.
4
What type of attack does CVE-2001-1359 enable?
CVE-2001-1359 enables remote attackers to execute a Trojan horse server to control affected Volution clients.
5
Is CVE-2001-1359 related to LDAP authentication?
Yes, CVE-2001-1359 is triggered by an LDAP authentication failure that leads to vulnerable client behaviors.