Family: Debian Local Security Checks --> Category: infos
[DSA104] DSA-104-1 cipe Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
Larry McVoy found a bug in the packet handling code for the CIPE
VPN package: it did not check if a received packet was too short
and could crash.
This has been fixed in version 1.3.0-3, and we recommend that you
upgrade your CIPE packages immediately.
Please note that the package only contains the required kernel patch,
you will have to manually build the kernel modules for your kernel with the
updated source from the cipe-source package.
Solution : http://www.debian.org/security/2002/dsa-104
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.