5

CVE-1999-0305

The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bsdi ≫ Bsd Os
Freebsd ≫ Freebsd Version 2.2
Freebsd ≫ Freebsd Version 2.2.5
Openbsd ≫ Openbsd Version 2.0
Openbsd ≫ Openbsd Version 2.1
Openbsd ≫ Openbsd Version 2.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.38% 0.685
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.openbsd.org/advisories/sourceroute.txt
http://www.osvdb.org/11502
https://exchange.xforce.ibmcloud.com/vulnerabilities/736