CVE-2003-0213

ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:poptop:pptp_server:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:poptop:pptp_server:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:poptop:pptp_server:1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:poptop:pptp_server:1.1.3_2002-10-09:*:*:*:*:*:*:*
cpe:2.3:a:poptop:pptp_server:1.1.4b1:*:*:*:*:*:*:*
cpe:2.3:a:poptop:pptp_server:1.1.4b2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2003-05-12 04:00

Updated : 2023-12-10 10:17


NVD link : CVE-2003-0213

Mitre link : CVE-2003-0213

CVE.ORG link : CVE-2003-0213


JSON object : View

Products Affected

poptop

  • pptp_server