Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA425] DSA-425-1 tcpdump


Vulnerability Assessment Details

[DSA425] DSA-425-1 tcpdump

Vulnerability Assessment Summary
DSA-425-1 tcpdump

Detailed Explanation for this Vulnerability Assessment

Multiple vulnerabilities were discovered in tcpdump, a tool for
inspecting network traffic. If a vulnerable version of tcpdump
attempted to examine a maliciously constructed packet, a number of
buffer overflows could be exploited to crash tcpdump, or potentially
execute arbitrary code with the rights of the tcpdump process.
For the current stable distribution (woody) these problems have been
fixed in version 3.6.2-2.7.
For the unstable distribution (sid) these problems will be fixed soon.
We recommend that you update your tcpdump package.


Solution : http://www.debian.org/security/2004/dsa-425
Network Security Threat Level: High

Networks Security ID: 9243, 9263, 9507

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

CYRIX 686MX 6x86MX-PR200 gold CPU Processor, SPGA296, Socket 7. Vintage
$15.0
CYRIX 686MX 6x86MX-PR200 gold CPU Processor, SPGA296, Socket 7. Vintage pictureIntel i486/25MHz SX CPU A80486SX-25 SX468
$26.25
Intel i486/25MHz SX CPU A80486SX-25 SX468 pictureIntel i5-3570 3.4GHz Quad-Core Processor + Cosair Vengeance LP 16GB DDR3 Ram
$137.59
Intel i5-3570 3.4GHz Quad-Core Processor + Cosair Vengeance LP 16GB DDR3 Ram pictureLOT OF 23 Intel XEON 2.80GHz SLBKR Desktop Processor
$220.0
LOT OF 23 Intel XEON 2.80GHz SLBKR Desktop Processor picture


Discussions

No Discussions have been posted on this vulnerability.