积极预防 及时发现
快速响应 力保恢复
在Tcpdump 3.4a中的ip_print程序允许远程攻击者通过一个零长度报头的包引发拒绝服务,...
发布时间:2001-11-28 信息来源:管理员

CNCVE编号:CNCVE-19991024 CVE编号:CAN-1999-1024 安全级别:中 漏洞中文描述: 在Tcpdump 3.4a中的ip_print程序允许远程攻击者通过一个零长度报头的包引发拒绝服务,当 tcpdump 打印这个包时将导致无限循环和存储器清除。 漏洞英文描述: ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet. 漏洞参考: Reference: BUGTRAQ:19990616 tcpdump 3.4 bug? Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=92955903802773&w=2 Reference: BUGTRAQ:19990617 Re: tcpdump 3.4 bug? Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=92963447601748&w=2 系统类型:其他 漏洞类型:异常处理错误