RSS   Vulnerabilities for 'Pptp server'   RSS

2007-05-11
 
CVE-2007-0244

 

 
pptpgre.c in PoPToP Point to Point Tunneling Server (pptpd) before 1.3.4 allows remote attackers to cause a denial of service (PPTP connection tear-down) via (1) GRE packets with out-of-order sequence numbers or (2) certain GRE packets that are processed using a wrong pointer and improperly dequeued.

 
2003-12-31
 
CVE-2003-1455

 

 
Multiple buffer overflows in the launch_bcrelay function in pptpctrl.c in PoPToP 1.1.4-b1 through PoPToP 1.1.4-b3 allow local users to execute arbitrary code.

 
2003-05-12
 
CVE-2003-0213

 

 
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.

 


Copyright 2024, cxsecurity.com

 

Back to Top