CVE-1999-0305

The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:bsdi:bsd_os:*:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:2.2:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:2.2.5:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:2.0:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:2.1:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:2.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 1998-02-01 05:00

Updated : 2023-12-10 10:17


NVD link : CVE-1999-0305

Mitre link : CVE-1999-0305

CVE.ORG link : CVE-1999-0305


JSON object : View

Products Affected

bsdi

  • bsd_os

openbsd

  • openbsd

freebsd

  • freebsd