PT-2001-1049 · Linux+1 · Linux Kernel+1

Published

2001-12-06

·

Updated

2017-10-10

·

CVE-2001-0851

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel versions 2.0, 2.2, and 2.4 with syncookies enabled Red Hat Linux kernel versions 2.2.19
Description The issue allows remote attackers to bypass firewall rules by brute force guessing the cookie, potentially leading to disruption of confidentiality, integrity, and availability of protected information. The exploitation of these vulnerabilities can be carried out remotely.
Recommendations For Linux kernel versions 2.0, 2.2, and 2.4 with syncookies enabled, consider disabling syncookies as a temporary workaround until a patch is available. For Red Hat Linux kernel version 2.2.19, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-08107
BDU:2015-08111
BDU:2015-08115
BDU:2015-08118
BDU:2015-08120
BDU:2015-08122
BDU:2015-08123
BDU:2015-08124
BDU:2015-08125
BDU:2015-08128
BDU:2015-08131
CVE-2001-0851

Affected Products

Linux Kernel
Red Hat Linux Kernel