← Back

CVE-1999-0305

nvd nist
Published: Feb 1, 1998Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.

Affected (6)

1 product
Bsd Os
1 product
Freebsd
1 product
Openbsd
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Freebsd
Version 2.2.5
Version 2.2
Openbsd
Version 2.0
Version 2.1
Version 2.2

References (6)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.