CVE-2004-0184

Publication date 4 May 2004

Last updated 24 July 2024


Ubuntu priority

Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tcpdump 7.04 feisty
Fixed 3.9.5-2ubuntu1
6.10 edgy
Fixed 3.9.4-4ubuntu0.2
6.06 LTS dapper
Fixed 3.9.4-2ubuntu0.2