Unrated severityNVD Advisory· Published May 12, 2003· Updated Apr 16, 2026
CVE-2003-0213
CVE-2003-0213
Description
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
Affected products
6cpe:2.3:a:poptop:pptp_server:1.0.1:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:poptop:pptp_server:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:poptop:pptp_server:1.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:poptop:pptp_server:1.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:poptop:pptp_server:1.1.3_2002-10-09:*:*:*:*:*:*:*
- cpe:2.3:a:poptop:pptp_server:1.1.4b1:*:*:*:*:*:*:*
- cpe:2.3:a:poptop:pptp_server:1.1.4b2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- www.debian.org/security/2003/dsa-295nvdPatchVendor Advisory
- www.securityfocus.com/archive/1/317995nvdPatchVendor Advisory
- www.securityfocus.com/bid/7316nvdExploitPatchVendor Advisory
- www.kb.cert.org/vuls/id/673993nvdUS Government Resource
- marc.infonvd
- marc.infonvd
- sourceforge.net/project/shownotes.phpnvd
- www.novell.com/linux/security/advisories/2003_029.htmlnvd
- www.securityfocus.com/archive/1/319428nvd
News mentions
0No linked articles in our index yet.