The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T02:12:35.783Z
Reserved: 2004-01-14T00:00:00
Link: CVE-2003-1029
No data.
Status : Deferred
Published: 2004-02-17T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2003-1029
No data.
OpenCVE Enrichment
No data.
Weaknesses