CVE-2000-1221
EPSS 16.7%
Description
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems authenticates by comparing the reverse-resolved hostname of the local machine to the hostname of the print server as returned by gethostname, which allows remote attackers to bypass intended access controls by modifying the DNS for the attacking IP.
How to fix CVE-2000-1221
To remediate CVE-2000-1221, upgrade the affected package to a fixed version below.
- Debian/lpr—upgrade to 1:0.48-1 or later
Is CVE-2000-1221 being exploited?
Moderate — EPSS is 16.7%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1:0.48-1