CVE-2002-2237: Input Validation
Published Dec 31, 2002
·Updated
tftp32 TFTP server 2.21 and earlier allows remote attackers to cause a denial of service via a GET request with a DOS device name such as com1 or aux.
Affected Software
1 affected component
TFTP TFTP server=2.21
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityWeaknessAffected Software
Oct 15, 2007
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2237?
CVE-2002-2237 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2002-2237?
To fix CVE-2002-2237, upgrade the TFTP server to version 2.22 or later.
3
What are the potential impacts of CVE-2002-2237?
The impact of CVE-2002-2237 includes the ability for remote attackers to cause the TFTP server to crash or become unresponsive.
4
Who is affected by CVE-2002-2237?
Users of TFTP server version 2.21 and earlier are affected by CVE-2002-2237.
5
What type of attack is associated with CVE-2002-2237?
CVE-2002-2237 is associated with denial of service attacks utilizing malformed GET requests.