search menu icon-carat-right cmu-wordmark

CERT Coordination Center

tcpdump contains vulnerability in ISAKMP decoding function rawprint() in print-isakmp.c

Vulnerability Note VU#174086

Original Release Date: 2004-01-16 | Last Revised: 2004-01-22

Overview

tcpdump contains a vulnerability in the way it parses Internet Security Association and Key Management Protocol (ISAKMP) packets.

Description

tcpdump is a widely-used network sniffer that is capable of decoding ISAKMP packets. A vulnerability exists in the way the tcpdump rawprint() function (in print-isakmp.c) parses certain malformed ISAKMP packets containing an invalid "len" or "loc" value. For more information, please see RHSA-2004-007.

Impact

A remote attacker could cause a denial of service or possibly execute arbitrary code with privileges of the tcpdump process.

Solution

Upgrade or Apply Patch

Upgrade or apply a patch as specified by your vendor.

Vendor Information

174086
 

View all 33 vendors View less vendors


CVSS Metrics

Group Score Vector
Base
Temporal
Environmental

References

Acknowledgements

This vulnerability was originally reported by Red Hat, Inc. Red Hat, in turn, credits Jonathan Heusser for discovering this vulnerability.

This document was written by Damon Morda.

Other Information

CVE IDs: CVE-2004-0057
Severity Metric: 2.95
Date Public: 2004-01-14
Date First Published: 2004-01-16
Date Last Updated: 2004-01-22 17:43 UTC
Document Revision: 11

Sponsored by CISA.