TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.
                
            References
                    | Link | Resource | 
|---|---|
| ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:56.tcp_wrappers.asc | Broken Link Patch Vendor Advisory | 
| http://www.osvdb.org/5454 | Broken Link | 
| ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:56.tcp_wrappers.asc | Broken Link Patch Vendor Advisory | 
| http://www.osvdb.org/5454 | Broken Link | 
Configurations
                    History
                    20 Nov 2024, 23:37
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:56.tcp_wrappers.asc - Broken Link, Patch, Vendor Advisory | |
| References | () http://www.osvdb.org/5454 - Broken Link | 
16 Feb 2024, 16:51
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-863 | |
| References | (FREEBSD) ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:56.tcp_wrappers.asc - Broken Link, Patch, Vendor Advisory | |
| References | (OSVDB) http://www.osvdb.org/5454 - Broken Link | |
| CPE | cpe:2.3:o:freebsd:freebsd:4.3:*:*:*:*:*:*:* cpe:2.3:o:freebsd:freebsd:4.1.1:*:*:*:*:*:*:*  | 
    cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:* | 
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : 7.5
         v3 : 9.8  | 
Information
                Published : 2001-08-23 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2001-1155
Mitre link : CVE-2001-1155
CVE.ORG link : CVE-2001-1155
JSON object : View
Products Affected
                freebsd
- freebsd
 
CWE
                
                    
                        
                        CWE-863
                        
            Incorrect Authorization
