tcpdump: multiple DoS issues
| Package(s): | tcpdump | CVE #(s): | CAN-2005-1280 CAN-2005-1279 CAN-2005-1278 | ||||||||||||||||||||||||||||||||
| Created: | May 2, 2005 | Updated: | April 10, 2006 | ||||||||||||||||||||||||||||||||
| Description: | The rsvp_print function in tcpdump 3.9.1 and earlier allows remote
attackers to cause a denial of service (infinite loop) via a crafted RSVP
packet of length 4. (CAN-2005-1280)
tcpdump 3.8.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet, which is not properly handled by RT_ROUTING_INFO, or LDP packet, which is not properly handled by the ldp_print function. (CAN-2005-1279) The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet. (CAN-2005-1278) | ||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||
