PT-2001-1219 · Freebsd · Freebsd

Published

2001-01-09

·

Updated

2017-10-10

·

CVE-2000-1184

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: FreeBSD versions 4.2 and earlier
Description: The issue allows remote attackers to cause a denial of service by specifying an arbitrary large file in the TERMCAP environmental variable, which consumes resources as the server processes the file.
Recommendations: For versions 4.2 and earlier, consider restricting access to the telnetd service until a fix is available, and avoid using the TERMCAP environmental variable with arbitrary large files to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-1184

Affected Products

Freebsd