VYPR
Unrated severityNVD Advisory· Published May 12, 2003· Updated Apr 16, 2026

CVE-2003-0213

CVE-2003-0213

Description

ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.

Affected products

6
  • cpe:2.3:a:poptop:pptp_server:1.0.1:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:poptop:pptp_server:1.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:poptop:pptp_server:1.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:poptop:pptp_server:1.1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:poptop:pptp_server:1.1.3_2002-10-09:*:*:*:*:*:*:*
    • cpe:2.3:a:poptop:pptp_server:1.1.4b1:*:*:*:*:*:*:*
    • cpe:2.3:a:poptop:pptp_server:1.1.4b2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

9

News mentions

0

No linked articles in our index yet.