CVE Vulnerabilities

CVE-2003-0093

Published: Mar 03, 2003 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop.

Affected Software

Name Vendor Start Version End Version
Tcpdump Lbl 3.4 (including) 3.4 (including)
Tcpdump Lbl 3.4a6 (including) 3.4a6 (including)
Tcpdump Lbl 3.5 (including) 3.5 (including)
Tcpdump Lbl 3.5.2 (including) 3.5.2 (including)
Tcpdump Lbl 3.6.2 (including) 3.6.2 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.2 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *

References