CVE-2003-1029
MEDIUM 5.0EPSS 9.9%
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 9.92% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2004-01-15
- Updated
- 2024-08-08