PT-2004-1013 · L2Tpd · L2Tpd

Published

2004-07-13

·

Updated

2017-07-11

·

CVE-2004-0649

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions l2tpd (affected versions not specified)
Description The issue is related to a buffer overflow in the write packet function in control.c for l2tpd, which may allow remote attackers to execute arbitrary code. Additionally, there are multiple vulnerabilities in the l2tpd package that can lead to breaches of confidentiality, integrity, and availability of protected information, and these can be exploited remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-02586
CVE-2004-0649
DSA-530

Affected Products

L2Tpd