Unrated severityNVD Advisory· Published Feb 17, 2004· Updated Apr 16, 2026
CVE-2003-1029
CVE-2003-1029
Description
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets.
Affected products
6cpe:2.3:a:lbl:tcpdump:3.4:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:lbl:tcpdump:3.4:*:*:*:*:*:*:*
- cpe:2.3:a:lbl:tcpdump:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:lbl:tcpdump:3.5.2:*:*:*:*:*:*:*
- cpe:2.3:a:lbl:tcpdump:3.6.2:*:*:*:*:*:*:*
- cpe:2.3:a:lbl:tcpdump:3.6.3:*:*:*:*:*:*:*
- cpe:2.3:a:lbl:tcpdump:3.7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- www.debian.org/security/2004/dsa-425nvdPatchVendor Advisory
- lwn.net/Alerts/66805/nvd
- marc.infonvd
- marc.infonvd
- marc.infonvd
- secunia.com/advisories/10636nvd
- secunia.com/advisories/10652nvd
- secunia.com/advisories/10668nvd
- secunia.com/advisories/10718nvd
- www.mandriva.com/security/advisoriesnvd
- www.securityfocus.com/archive/1/350238/30/21640/threadednvd
- www.securitytracker.com/idnvd
News mentions
0No linked articles in our index yet.