Debian DSA-854-1 : tcpdump - infinite loop

medium Nessus Plugin ID 19962

Synopsis

The remote Debian host is missing a security-related update.

Description

Simon Nielsen discovered that the BGP dissector in tcpdump, a powerful tool for network monitoring and data acquisition, does not properly handle a -1 return value from an internal function that decodes data packets. A specially crafted BGP packet can cause a denial of service via an infinite loop.

Solution

Upgrade the tcpdump package.

The old stable distribution (woody) is not affected by this problem.

For the stable distribution (sarge) this problem has been fixed in version 3.8.3-5sarge1.

See Also

http://www.debian.org/security/2005/dsa-854

Plugin Details

Severity: Medium

ID: 19962

File Name: debian_DSA-854.nasl

Version: 1.16

Type: local

Agent: unix

Published: 10/11/2005

Updated: 1/4/2021

Supported Sensors: Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.2

CVSS v2

Risk Factor: Medium

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:debian:debian_linux:tcpdump, cpe:/o:debian:debian_linux:3.1

Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l

Patch Publication Date: 10/9/2005

Vulnerability Publication Date: 6/8/2005

Reference Information

CVE: CVE-2005-1267

DSA: 854