Back to search
CVE-2003-0213
Published: Apr 26, 2003
Modified: Aug 8, 2024
PUBLISHED
Description
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20030418 Exploit for PoPToP PPTP server
mailing-list
x_refsource_BUGTRAQ
SuSE-SA:2003:029
vendor-advisory
x_refsource_SUSE
VU#673993
third-party-advisory
x_refsource_CERT-VN
7316
vdb-entry
x_refsource_BID
http://sourceforge.net/project/shownotes.php?release_id=138437
x_refsource_CONFIRM
DSA-295
vendor-advisory
x_refsource_DEBIAN
20030422 Re: Exploit for PoPToP PPTP server - Linux version
mailing-list
x_refsource_BUGTRAQ
20030409 PoPToP PPTP server remotely exploitable buffer overflow
mailing-list
x_refsource_BUGTRAQ
20030428 GLSA: pptpd (200304-08)
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now