The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2005-06-10 04:00
Updated : 2024-02-28 10:42
NVD link : CVE-2005-1267
Mitre link : CVE-2005-1267
CVE.ORG link : CVE-2005-1267
JSON object : View
Products Affected
redhat
- fedora_core
mandrakesoft
- mandrake_linux
gentoo
- linux
lbl
- tcpdump
trustix
- secure_linux
CWE