The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2005-06-09 21:00
Updated : 2018-10-19 08:31
NVD link : CVE-2005-1267
Mitre link : CVE-2005-1267
JSON object : View
CWE
Products Affected
mandrakesoft
- mandrake_linux
gentoo
- linux
redhat
- fedora_core
trustix
- secure_linux
lbl
- tcpdump