|
|
Subscribe / Log in / New account

tcpdump: flaws in the ISAKMP decoding routines

Package(s):tcpdump CVE #(s):CAN-2003-0989 CAN-2004-0057 CAN-2004-0055
Created:January 15, 2004 Updated:April 6, 2004
Description: George Bakos discovered flaws in the ISAKMP decoding routines of tcpdump versions prior to 3.8.1. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2003-0989 to this issue.

Jonathan Heusser discovered two additional flaws in the ISAKMP decoding routines of tcpdump versions up to and including 3.8.1. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0057 to this issue.

Jonathan Heusser discovered a flaw in the print_attr_string function in the RADIUS decoding routines for tcpdump 3.8.1 and earlier. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-0055 to this issue.

Remote attackers could potentially exploit these issues by sending carefully-crafted packets to a victim. If the victim uses tcpdump, these packets could result in a denial of service, or possibly execute arbitrary code as the 'pcap' user.

Alerts:
Gentoo 200404-03 tcpdump 2004-03-31
Fedora FEDORA-2004-091 tcpdump 2004-03-04
SCO Group CSSA-2004-008.0 tcpdump 2004-03-02
Fedora FEDORA-2004-092 tcpdump 2004-03-02
Whitebox WBSA-2004:008-01 tcpdump 2004-02-12
Fedora-Legacy FLSA:1222 tcpdump 2004-01-31
Mandrake MDKSA-2004:008 tcpdump 2004-01-26
EnGarde ESA-20040119-002 tcpdump 2004-01-19
Debian DSA-425-1 tcpdump 2004-01-16
OpenPKG OpenPKG-SA-2004.002 tcpdump 2004-01-16
Trustix 2004-0004 tcpdump 2004-01-05
SuSE SuSE-SA:2004:002 tcpdump 2004-01-14
Red Hat RHSA-2004:008-01 tcpdump 2004-01-15
Red Hat RHSA-2004:007-01 tcpdump 2004-01-14

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds