← Back

CVE-2005-1267

nvd nist
Published: Jun 10, 2005Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.

Affected (25)

Products: Lbl: Tcpdump · Gentoo: Linux · Mandrakesoft: Mandrake Linux · +2 more
Show all products
1 product
Tcpdump
1 product
Linux
1 product
Mandrake Linux
1 product
Fedora Core
1 product
Secure Linux
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Lbl
Version 3.4
Version 3.4a6
Version 3.5.2
Version 3.5
Version 3.5_alpha
Version 3.6.2
Version 3.6.3
Version 3.7.1
Version 3.7.2
Version 3.7
Version 3.8.1
Version 3.8.2
Version 3.8.3
Version 3.9.1
Version 3.9
Configuration B
10 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Mandrakesoft
Version 10.1
Version 10.1
Version 10.2
Version 10.2
Redhat
Version core_3.0
Version core_4.0
Trustix
Version 2.0
Version 2.1
Version 2.2

References (20)

Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.