First published: Mon Feb 12 2001(Updated: )
rp-pppoe PPPoE client allows remote attackers to cause a denial of service via the Clamp MSS option and a TCP packet with a zero-length TCP option.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Roaring Penguin PPPoE | =2.4 | |
Roaring Penguin PPPoE | =2.3 | |
Roaring Penguin PPPoE | =2.1 | |
Roaring Penguin PPPoE | =2.2 | |
Roaring Penguin PPPoE | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0026 is classified as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2001-0026, you should upgrade to a patched version of the Roaring Penguin PPPoE client.
CVE-2001-0026 allows remote attackers to disrupt network service by exploiting the PPPoE client's handling of TCP packets.
CVE-2001-0026 affects versions 2.0 through 2.4 of the Roaring Penguin PPPoE client.
CVE-2001-0026 can impact any network utilizing vulnerable versions of the Roaring Penguin PPPoE client.