Zebedee · Zebedee · CVE-2005-2904
**Name of the Vulnerable Software and Affected Versions**
zebedee versions prior to 2.5.3
**Description**
The issue allows remote attackers to cause a denial of service, potentially leading to disruption of protected information availability. This can be triggered by a zero in the port number of the protocol option header, which causes an assert error in the `makeConnection` function in `zebedee.c`.
**Recommendations**
For versions prior to 2.5.3, update to version 2.5.3 or later to resolve the issue. As a temporary workaround, consider setting the "allowed redirection port" to prevent remote attackers from causing a denial of service.