First published: Sat Apr 26 2003(Updated: )
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PoPToP PPTP server | =1.1.3 | |
PoPToP PPTP server | =1.1.3_2002-10-09 | |
PoPToP PPTP server | =1.1.4b1 | |
PoPToP PPTP server | =1.1.4b2 | |
PoPToP PPTP server | =1.0.1 | |
PoPToP PPTP server | =1.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.