PT-2002-1279 · Pgp · Pgpfire
Published
2002-05-03
·
Updated
2024-02-14
·
CVE-2002-0208
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
PGPfire version 7.1 for Windows
Description
The issue allows remote attackers to determine that the system is running PGPfire by modifying packets in ICMP error messages. This is due to PGPfire altering the system's TCP/IP stack.
Recommendations
For PGPfire version 7.1 for Windows, consider restricting access to the system until a patch is available or apply configuration changes to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Side Channel Attack
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pgpfire