>> Redhat Security Update Fixes Tcpdump Denial of Service Issue
Title : Redhat Security Update Fixes Tcpdump Denial of Service Issue VUPEN ID : VUPEN/ADV-2005-0756 CVE ID : CVE-2005-1267 CWE ID : CWE-
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-06-14
Technical Description
Redhat has released a security patch to correct a vulnerability identified in Tcpdump. This flaw resides in the "bgp_update_print()" function (print-bgp.c) that does not properly handle specially crafted BGP packets, which may be exploited by a remote attacker to cause the application to crash. For additional information, see : VUPEN/ADV-2005-0713