CVE-2002-0872

l2tpd 0.67 does not initialize the random number generator, which allows remote attackers to hijack sessions.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:l2tpd:l2tpd:0.62:*:*:*:*:*:*:*
cpe:2.3:a:l2tpd:l2tpd:0.63:*:*:*:*:*:*:*
cpe:2.3:a:l2tpd:l2tpd:0.64:*:*:*:*:*:*:*
cpe:2.3:a:l2tpd:l2tpd:0.65:*:*:*:*:*:*:*
cpe:2.3:a:l2tpd:l2tpd:0.66:*:*:*:*:*:*:*
cpe:2.3:a:l2tpd:l2tpd:0.67:*:*:*:*:*:*:*

History

20 Nov 2024, 23:40

Type Values Removed Values Added
References () http://www.debian.org/security/2002/dsa-152 - () http://www.debian.org/security/2002/dsa-152 -
References () http://www.iss.net/security_center/static/9845.php - () http://www.iss.net/security_center/static/9845.php -
References () http://www.securityfocus.com/bid/5451 - () http://www.securityfocus.com/bid/5451 -

Information

Published : 2002-09-05 04:00

Updated : 2024-11-20 23:40


NVD link : CVE-2002-0872

Mitre link : CVE-2002-0872

CVE.ORG link : CVE-2002-0872


JSON object : View

Products Affected

l2tpd

  • l2tpd