First published: Wed Sep 12 2001(Updated: )
ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tcpdump | =3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1024 has a significant severity level as it allows for a denial of service due to an infinite loop.
To fix CVE-1999-1024, upgrade Tcpdump to a version later than 3.4 to eliminate this vulnerability.
CVE-1999-1024 specifically affects Tcpdump version 3.4.
Yes, CVE-1999-1024 can cause system crashes due to core dumps resulting from its denial of service condition.
Yes, CVE-1999-1024 can be exploited remotely by sending a specially crafted packet.