CVE-2001-0851

Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.

Score5.0
Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactNONE
Availability ImpactNONE
Published2001-12-06 12:00:00.000-05
Last Modified2017-10-09 09:29:54.000-04

Vulnerable Software List

VendorProductVersions
Caldera Openlinux Edesktop 2.4
Caldera Openlinux Eserver 2.3.1
Caldera Openlinux 2.3
Caldera Openlinux Workstation 3.1
Caldera Openlinux Server 3.1
Linux Linux Kernel 2.0, 2.2.0, 2.4.0
Suse Suse Linux 6.3, 6.4, 7.0, 7.1, 7.2, 7.3

References

SourceLink
CONECTIVACLA-2001:432
CALDERACSSA-2001-38.0
MANDRAKEMDKSA-2001:082
ENGARDEESA-20011106-01
SUSESuSE-SA:2001:039
REDHATRHSA-2001:142
XFlinux-syncookie-bypass-filter(7461)