PT-2002-1279 · Pgp · Pgpfire

Published

2002-05-03

·

Updated

2024-02-14

·

CVE-2002-0208

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions PGPfire version 7.1 for Windows
Description The issue allows remote attackers to determine that the system is running PGPfire by modifying packets in ICMP error messages. This is due to PGPfire altering the system's TCP/IP stack.
Recommendations For PGPfire version 7.1 for Windows, consider restricting access to the system until a patch is available or apply configuration changes to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Side Channel Attack

Weakness Enumeration

Related Identifiers

CVE-2002-0208

Affected Products

Pgpfire