CVE Vulnerabilities

CVE-2003-0093

Published: Mar 03, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop.

Affected Software

NameVendorStart VersionEnd Version
TcpdumpLbl3.4 (including)3.4 (including)
TcpdumpLbl3.4a6 (including)3.4a6 (including)
TcpdumpLbl3.5 (including)3.5 (including)
TcpdumpLbl3.5.2 (including)3.5.2 (including)
TcpdumpLbl3.6.2 (including)3.6.2 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.2RedHat*
Red Hat Linux 7.3RedHat*
Red Hat Linux 8.0RedHat*
Red Hat Linux Advanced Workstation 2.1RedHat*

References