Vulnerabilities > CVE-2000-0333

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
ethereal-group
lbl
exploit available

Summary

tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a jump offset refers to itself, which causes tcpdump to enter an infinite loop while decompressing the packet.

Exploit-Db

  • descriptionEthereal 0.8.4/0.8.5/0.8.6,tcpdump 3.4/3.5 alpha DNS Decode Vulnerability (1). CVE-2000-0333. Remote exploit for linux platform
    idEDB-ID:19891
    last seen2016-02-02
    modified1999-05-31
    published1999-05-31
    reporterHugo Breton
    sourcehttps://www.exploit-db.com/download/19891/
    titleEthereal 0.8.4/0.8.5/0.8.6,tcpdump 3.4/3.5 alpha DNS Decode Vulnerability 1
  • descriptionEthereal 0.8.4/0.8.5/0.8.6,tcpdump 3.4/3.5 alpha DNS Decode Vulnerability (2). CVE-2000-0333. Remote exploit for linux platform
    idEDB-ID:19892
    last seen2016-02-02
    modified1999-05-31
    published1999-05-31
    reporterscut
    sourcehttps://www.exploit-db.com/download/19892/
    titleEthereal 0.8.4/0.8.5/0.8.6,tcpdump 3.4/3.5 alpha DNS Decode Vulnerability 2