Vulnerabilities > LBL

DATE CVE VULNERABILITY TITLE RISK
2005-06-10 CVE-2005-1267 Denial Of Service vulnerability in tcpdump BGP Decoding Routines
The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.
network
low complexity
lbl gentoo mandrakesoft redhat trustix
5.0
2005-05-02 CVE-2005-1280 Denial Of Service vulnerability in tcpdump RSVP Decoding Routines
The rsvp_print function in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4.
network
low complexity
lbl
5.0
2005-05-02 CVE-2005-1279 Denial Of Service vulnerability in tcpdump LDP Decoding Routines
tcpdump 3.8.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted (1) BGP packet, which is not properly handled by RT_ROUTING_INFO, or (2) LDP packet, which is not properly handled by the ldp_print function.
network
low complexity
lbl
5.0
2005-05-02 CVE-2005-1278 Denial Of Service vulnerability in tcpdump ISIS Decoding Routines
The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet.
network
low complexity
lbl
5.0
2004-02-17 CVE-2004-0057 Remote Buffer Overflow vulnerability in TCPDump ISAKMP Decoding Routines
The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.
network
low complexity
lbl
5.0
2004-02-17 CVE-2004-0055 Denial Of Service vulnerability in TCPDump Malformed RADIUS Packet
The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.
network
low complexity
lbl
5.0
2004-02-17 CVE-2003-1029 Unspecified vulnerability in LBL Tcpdump
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets.
network
low complexity
lbl
5.0
2003-03-31 CVE-2003-0145 Denial-Of-Service vulnerability in tcpdump
Unknown vulnerability in tcpdump before 3.7.2 related to an inability to "Handle unknown RADIUS attributes properly," allows remote attackers to cause a denial of service (infinite loop), a different vulnerability than CAN-2003-0093.
network
low complexity
lbl
5.0
2003-03-07 CVE-2003-0108 Denial Of Service vulnerability in TCPDump Malformed ISAKMP Packet
isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop.
network
low complexity
lbl
5.0
2003-03-03 CVE-2003-0093 Denial-Of-Service vulnerability in tcpdump
The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop.
network
low complexity
lbl
5.0