CVE Vulnerabilities

CVE-2001-0183

Published: Mar 26, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag in a TCP packet, which makes the packet appear to be part of an established connection.

Affected Software

NameVendorStart VersionEnd Version
FreebsdFreebsd3.0 (including)3.0 (including)
FreebsdFreebsd3.1 (including)3.1 (including)
FreebsdFreebsd3.3 (including)3.3 (including)
FreebsdFreebsd3.4 (including)3.4 (including)
FreebsdFreebsd3.5 (including)3.5 (including)
FreebsdFreebsd3.5.1 (including)3.5.1 (including)
FreebsdFreebsd4.0 (including)4.0 (including)
FreebsdFreebsd4.0-alpha (including)4.0-alpha (including)
FreebsdFreebsd4.1 (including)4.1 (including)
FreebsdFreebsd4.1.1 (including)4.1.1 (including)
FreebsdFreebsd4.2 (including)4.2 (including)

References