Family: Debian Local Security Checks --> Category: infos
[DSA854] DSA-854-1 tcpdump Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
Simon Nielsen discovered that the BGP dissector in tcpdump, a powerful
tool for network monitoring and data acquisition, does not properly
handle a -1 return value from an internal function that decodes data
packets. A specially crafted BGP packet can cause a denial of service
via an infinite loop.
The old stable distribution (woody) is not affected by this problem.
For the stable distribution (sarge) this problem has been fixed in
We recommend that you upgrade your tcpdump package.
Solution : http://www.debian.org/security/2005/dsa-854
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.