17 results (0.002 seconds)

CVSS: 7.5EPSS: 11%CPEs: 25EXPL: 1

10 Jun 2005 — The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet. • https://www.exploit-db.com/exploits/1037 •

CVSS: 7.5EPSS: 15%CPEs: 1EXPL: 1

26 Apr 2005 — The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet. • https://www.exploit-db.com/exploits/959 •

CVSS: 7.5EPSS: 58%CPEs: 1EXPL: 3

26 Apr 2005 — tcpdump 3.8.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted (1) BGP packet, which is not properly handled by RT_ROUTING_INFO, or (2) LDP packet, which is not properly handled by the ldp_print function. • https://www.exploit-db.com/exploits/957 •

CVSS: 7.5EPSS: 13%CPEs: 1EXPL: 2

26 Apr 2005 — The rsvp_print function in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4. • https://www.exploit-db.com/exploits/956 •

CVSS: 7.5EPSS: 31%CPEs: 4EXPL: 1

15 Jan 2004 — The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value. La función print_attr_string en print-radius.c de tcpdump 3.8.1 y anteriores permite a atacantes remotos causar una denegación de servicio (fallo de segmentación) mediante un atributo RADIUS con un valor de longitud demasiado grande. • ftp://ftp.sco.com/pub/security/OpenLinux/CSSA-2004-008.0.txt •

CVSS: 7.5EPSS: 21%CPEs: 6EXPL: 1

15 Jan 2004 — The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets. El procesador (parser) del protocolo L2TP en tcpdump 3.8.1 y anteriores permite a atacantes remotos causar una denegación de servicio (bucle infinito y consumición de memoria) mediante un paquete con datos no válidos al puerto UDP 1701,... • https://www.exploit-db.com/exploits/23452 •

CVSS: 7.5EPSS: 25%CPEs: 1EXPL: 0

15 Jan 2004 — The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989. La función rawprint en las rutinas de decodificación ISAKMP (print-isakmp.c) de tcpdump 3.8.1 y anteriores permite a atacantes remotos causar una denegación de servicio (fallo de segmentación) median... • ftp://ftp.sco.com/pub/security/OpenLinux/CSSA-2004-008.0.txt •

CVSS: 7.5EPSS: 1%CPEs: 4EXPL: 0

31 Mar 2003 — Unknown vulnerability in tcpdump before 3.7.2 related to an inability to "Handle unknown RADIUS attributes properly," allows remote attackers to cause a denial of service (infinite loop), a different vulnerability than CAN-2003-0093. • http://www.debian.org/security/2003/dsa-261 •

CVSS: 7.5EPSS: 17%CPEs: 4EXPL: 1

07 Mar 2003 — isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop. isakmp_sub_print en tcpdump 3.6 a la 3.7.1 permite a atacantes remotos causar Denegación de Servicio (consumo de CPU) mediante cierto paquete ISAKMP malformado enviado al puerto 500 UDP, lo que provoca que tcpdump entre en un bucle infinito. • https://www.exploit-db.com/exploits/22294 •

CVSS: 7.5EPSS: 1%CPEs: 5EXPL: 1

03 Mar 2003 — The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop. • http://www.debian.org/security/2003/dsa-261 •