Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

tcpdump ISIS Decoding Routines Denial Of Service Vulnerability

The 'tcpdump' utility is prone to a vulnerability that may allow a remote attacker to cause a denial-of-service condition in the software. The issue occurs because of the way tcpdump decodes Intermediate System to Intermediate System (ISIS) packets. A remote attacker may send malformed ISIS packets to cause the software to enter an infinite loop and hang.

This issue affect tcpdump 3.9.x/CVS and earlier.







 

Privacy Statement
Copyright 2008, SecurityFocus