CVE Database
/

CVE-2000-1221

Back to search

CVE-2000-1221

Published: Apr 21, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP.

VendorProductVersions

n/a

n/a

affected
n/a

References

A010800-v
vendor-advisory
x_refsource_ATSTAKE
927
vdb-entry
x_refsource_BID
RHSA-2000:002
vendor-advisory
x_refsource_REDHAT
VU#30308
third-party-advisory
x_refsource_CERT-VN
20000108 Quadruple Inverted Backflip
vendor-advisory
x_refsource_L0PHT
redhat-lpd-auth(3840)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now