CVE-2000-1221

CVSS 2.0 Score 10 of 10 (high)

Details

Published Jan 8, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-1221 is a vulnerability affecting the line printer daemon (lpd) in the lpr package of multiple Linux operating systems. Instead of verifying the hostname of the print server during the authentication process, lpd compares the reverse-resolved hostname of the local machine, allowing remote attackers to bypass intended access controls by manipulating the DNS records for the attacking IP address. This weakness could potentially grant unauthorized access to printing services, posing a significant security risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SGI IRAX
  • Red Hat Enterprise Linux
  • Debian

Affected Vendors

  • Red Hat
  • Debian
  • Saskatchewan Government Insurance