CVE-2003-0989

9 documents7 sources
Severity
7.5HIGH
EPSS
19.7%
top 4.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 17
Latest updateMay 3

Description

tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

Debiantcpdump< 3.8.1+3
NVDredhat/tcpdump3.8.0
NVDredhat/linux9.0

Patches

🔴Vulnerability Details

3
GHSA
GHSA-945j-48p3-f37w: tcpdump before 32022-05-03
OSV
CVE-2003-0989: tcpdump before 32004-02-17
CVEList
CVE-2003-0989: tcpdump before 32004-01-15

📋Vendor Advisories

3
Red Hat
security flaw2004-01-14
Red Hat
security flaw2004-01-04
Debian
CVE-2003-0989: tcpdump - tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infin...2003

💬Community

2
Bugzilla
CVE-2003-0989 security flaw2018-08-16
Bugzilla
CVE-2004-0057 security flaw2018-08-16
CVE-2003-0989 (HIGH CVSS 7.5) | tcpdump before 3.8.1 allows remote | cvebase.io