← Vulnerability feed

Vulnerability record · CVE-2001-0851 · published 6 December 2001

CVE-2001-0851: Caldera openlinux server vulnerability

Caldera · Openlinux Server

Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.

5.0 CVSS 2.0 Medium EPSS 3.1% · top 12.8%
5.0CVSS 2.0 base score
3.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
7Affected product versions listed by NVD
14References
16 Jun 2026Last modified by NVD

Description

Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

7 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2001-0851 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2001-0850Caldera openlinux vulnerabilityA configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local …EPSS 2.3%10.0CVE-2001-0181Caldera openlinux desktop vulnerabilityFormat string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary command…EPSS 5.2%10.0CVE-2000-0917LPRng use_syslog format string allows remote command executionLPRng 3.6.24 contains a format string vulnerability in the use_syslog() function. Because the flaw is remotely reachable and leads to arbitrary comma…EPSS 79%analysed10.0CVE-2000-0844Caldera openlinux ebuilder permissions and access controls vulnerabilitySome functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to exec…EPSS 16%10.0CVE-2000-0491Gnome gdm vulnerabilityBuffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of s…EPSS 18%10.0CVE-1999-0879Bsdi bsd os vulnerabilityBuffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.EPSS 9.7%10.0CVE-2000-0374Caldera openlinux vulnerabilityThe default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allow…EPSS 4.3%10.0CVE-1999-0368Proftpd project proftpd vulnerabilityBuffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.EPSS 40%

Source: NIST National Vulnerability Database (record CVE-2001-0851), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.