PT-2001-1219 · Freebsd · Freebsd
Published
2001-01-09
·
Updated
2017-10-10
·
CVE-2000-1184
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
FreeBSD versions 4.2 and earlier
Description:
The issue allows remote attackers to cause a denial of service by specifying an arbitrary large file in the
TERMCAP environmental variable, which consumes resources as the server processes the file.Recommendations:
For versions 4.2 and earlier, consider restricting access to the telnetd service until a fix is available, and avoid using the
TERMCAP environmental variable with arbitrary large files to minimize the risk of exploitation.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd