Unrated severityNVD Advisory· Published Apr 26, 2013· Updated Jun 16, 2026
CVE-2013-1428
CVE-2013-1428
Description
Stack-based buffer overflow in the receive_tcppacket function in net_packet.c in tinc before 1.0.21 and 1.1 before 1.1pre7 allows remote authenticated peers to cause a denial of service (crash) or possibly execute arbitrary code via a large TCP packet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9cpe:2.3:a:tinc-vpn:tinc:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:tinc-vpn:tinc:*:*:*:*:*:*:*:*range: <=1.0.20
- cpe:2.3:a:tinc-vpn:tinc:*:pre6:*:*:*:*:*:*range: <=1.1
- cpe:2.3:a:tinc-vpn:tinc:1.0.17:*:*:*:*:*:*:*
- cpe:2.3:a:tinc-vpn:tinc:1.0.18:*:*:*:*:*:*:*
- cpe:2.3:a:tinc-vpn:tinc:1.0.19:*:*:*:*:*:*:*
- cpe:2.3:a:tinc-vpn:tinc:1.1:pre3:*:*:*:*:*:*
- cpe:2.3:a:tinc-vpn:tinc:1.1:pre4:*:*:*:*:*:*
- cpe:2.3:a:tinc-vpn:tinc:1.1:pre5:*:*:*:*:*:*
- (no CPE)range: <1.0.21 (1.0 branch) or <1.1pre7 (1.1 branch)
Patches
Vulnerability mechanics
References
12- secunia.com/advisories/53087nvdVendor Advisory
- secunia.com/advisories/53108nvdVendor Advisory
- www.tinc-vpn.org/pipermail/tinc/2013-April/003240.htmlnvdVendor Advisory
- freecode.com/projects/tinc/releases/354122nvd
- lists.fedoraproject.org/pipermail/package-announce/2013-May/105531.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2013-May/105559.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2013-May/106167.htmlnvd
- osvdb.org/92653nvd
- www.debian.org/security/2013/dsa-2663nvd
- www.securityfocus.com/bid/59369nvd
- www.tinc-vpn.org/news/nvd
- github.com/gsliepen/tinc/commit/17a33dfd95b1a29e90db76414eb9622df9632320nvd
News mentions
0No linked articles in our index yet.