CIPE Denial of Service Vulnerability
BID:3951
Info
CIPE Denial of Service Vulnerability
| Bugtraq ID: | 3951 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 14 2002 12:00AM |
| Updated: | Jan 14 2002 12:00AM |
| Credit: | Credited to Larry McVoy. |
| Vulnerable: |
Olaf Titz CIPE 1.5.2 Olaf Titz CIPE 1.4.6 Olaf Titz CIPE 1.4.5 Olaf Titz CIPE 1.3 Olaf Titz CIPE 1.2 Olaf Titz CIPE 1.1 Olaf Titz CIPE 1.0.1 |
| Not Vulnerable: | |
Discussion
CIPE Denial of Service Vulnerability
CIPE is an open source VPN implementation for Linux and Windows systems.
CIPE contains a failure to handle exceptional conditions that can result in a denial of service. If a CIPE packet is received that is shorter than it should be, the system will crash attempting to process it.
CIPE runs at the kernel level and exploitation may result in a system-wide crash. Additionally, an unexpected kernel crash may result in loss of data.
CIPE is an open source VPN implementation for Linux and Windows systems.
CIPE contains a failure to handle exceptional conditions that can result in a denial of service. If a CIPE packet is received that is shorter than it should be, the system will crash attempting to process it.
CIPE runs at the kernel level and exploitation may result in a system-wide crash. Additionally, an unexpected kernel crash may result in loss of data.
Exploit / POC
CIPE Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.