Unrated severityNVD Advisory· Published Oct 22, 2012· Updated Apr 29, 2026
CVE-2012-4435
CVE-2012-4435
Description
fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server crash) via a long IP address.
Affected products
3cpe:2.3:a:cipherdyne:fwknop:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cipherdyne:fwknop:*:*:*:*:*:*:*:*range: <=2.0.2
- cpe:2.3:a:cipherdyne:fwknop:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:cipherdyne:fwknop:2.0.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.cipherdyne.org/blog/2012/09/software-release-fwknop-2.0.3.htmlnvdVendor Advisory
- www.cipherdyne.org/cgi-bin/gitweb.cginvd
- www.cipherdyne.org/cgi-bin/gitweb.cginvd
- www.openwall.com/lists/oss-security/2012/09/19/2nvd
- www.openwall.com/lists/oss-security/2012/09/20/2nvd
- www.openwall.com/lists/oss-security/2012/09/20/4nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/79568nvd
News mentions
0No linked articles in our index yet.