Nom du paquet
tcpdump
Date
2002-05-16
Advisory ID
MDKSA-2002:032
Affected versions
8.1 i586 , SNF7.2 i586 , CS1.0 i586 , 8.1 i586 , 8.0 i586 , 8.2 i586 , 8.0 i586 , 8.2 i586 , 7.1 i586 , 7.2 i586

Problem description

Several buffer overflows were found in the tcpdump package by FreeBSD developers during a code audit, in versions prior to 3.5. However, newer versions of tcpdump, including 3.6.2, are also vulnerable to another buffer overflow in the AFS RPC decoding functions, which was discovered by Nick Cleaton. These vulnerabilities could be used by a remote attacker to crash the the tcpdump process or possibly even be exploited to execute arbitrary code as the user running tcpdump, which is usually root. The newer libpcap 0.6 has also been audited to make it more safe by implementing better buffer boundary checks in several functions.

Updated packages

8.1 i586

 6331901e596e243099aa6474481ea88a  ia64/8.1/RPMS/tcpdump-3.6.2-2.1mdk.ia64.rpm
683c3b6f0ae7754090cbcf480cd731b0  ia64/8.1/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

SNF7.2 i586

 e39a58560c3ec60a574c63dd9e383fda  snf7.2/RPMS/libpcap-0.6.2-3.2mdk.i586.rpm
4600b4d1a435d17a77560a36e28ddc70  snf7.2/RPMS/libpcap-devel-0.6.2-3.2mdk.i586.rpm
fc014253b27e44c8a230f936d7eadf9e  snf7.2/RPMS/tcpdump-3.6.2-2.2mdk.i586.rpm
5e6091d2f916b180ffc80d60e2005a49  snf7.2/SRPMS/libpcap-0.6.2-3.2mdk.src.rpm
a997724147a333e27e72670bff28e5ee  snf7.2/SRPMS/tcpdump-3.6.2-2.2mdk.src.rpm

CS1.0 i586

 a17ec464d576bdbd870dc6a5d25fc59d  1.0.1/RPMS/libpcap-0.6.2-3.2mdk.i586.rpm
ed780612ab8620e84e8310432a5df0b9  1.0.1/RPMS/libpcap-devel-0.6.2-3.2mdk.i586.rpm
a186519910760e36b7e50456412ab20e  1.0.1/RPMS/tcpdump-3.6.2-2.2mdk.i586.rpm
5e6091d2f916b180ffc80d60e2005a49  1.0.1/SRPMS/libpcap-0.6.2-3.2mdk.src.rpm
a997724147a333e27e72670bff28e5ee  1.0.1/SRPMS/tcpdump-3.6.2-2.2mdk.src.rpm

8.1 i586

 39715d1c613144e859f0386ee583377a  8.1/RPMS/tcpdump-3.6.2-2.1mdk.i586.rpm
683c3b6f0ae7754090cbcf480cd731b0  8.1/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

8.0 i586

 d8deeabab302271054ecad942a14013e  8.0/RPMS/libpcap0-0.6.2-3.1mdk.i586.rpm
b2aa6d27578b8699640b6ed2e76ba228  8.0/RPMS/libpcap0-devel-0.6.2-3.1mdk.i586.rpm
16eac5435d8b8e1075c10d393a2914a5  8.0/RPMS/tcpdump-3.6.2-2.1mdk.i586.rpm
4b1956a781b1185e693a26037d4804a5  8.0/SRPMS/libpcap-0.6.2-3.1mdk.src.rpm
683c3b6f0ae7754090cbcf480cd731b0  8.0/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

8.2 i586

 8c36a78c9a086c2d582d70d431533650  8.2/RPMS/tcpdump-3.6.2-2.1mdk.i586.rpm
683c3b6f0ae7754090cbcf480cd731b0  8.2/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

8.0 i586

 4a4f5cca7fc50d1616b857b89afe3ae3  ppc/8.0/RPMS/libpcap0-0.6.2-3.1mdk.ppc.rpm
11be44f15a54a9654cd48b5b8aed04ba  ppc/8.0/RPMS/libpcap0-devel-0.6.2-3.1mdk.ppc.rpm
68255f8f80d88b91fd488d6379db81df  ppc/8.0/RPMS/tcpdump-3.6.2-2.1mdk.ppc.rpm
4b1956a781b1185e693a26037d4804a5  ppc/8.0/SRPMS/libpcap-0.6.2-3.1mdk.src.rpm
683c3b6f0ae7754090cbcf480cd731b0  ppc/8.0/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

8.2 i586

 081041c2713a9c76c5bf2fc727a03c45  ppc/8.2/RPMS/tcpdump-3.6.2-2.1mdk.ppc.rpm
683c3b6f0ae7754090cbcf480cd731b0  ppc/8.2/SRPMS/tcpdump-3.6.2-2.1mdk.src.rpm

7.1 i586

 a17ec464d576bdbd870dc6a5d25fc59d  7.1/RPMS/libpcap-0.6.2-3.2mdk.i586.rpm
ed780612ab8620e84e8310432a5df0b9  7.1/RPMS/libpcap-devel-0.6.2-3.2mdk.i586.rpm
a186519910760e36b7e50456412ab20e  7.1/RPMS/tcpdump-3.6.2-2.2mdk.i586.rpm
5e6091d2f916b180ffc80d60e2005a49  7.1/SRPMS/libpcap-0.6.2-3.2mdk.src.rpm
a997724147a333e27e72670bff28e5ee  7.1/SRPMS/tcpdump-3.6.2-2.2mdk.src.rpm

7.2 i586

 e39a58560c3ec60a574c63dd9e383fda  7.2/RPMS/libpcap-0.6.2-3.2mdk.i586.rpm
4600b4d1a435d17a77560a36e28ddc70  7.2/RPMS/libpcap-devel-0.6.2-3.2mdk.i586.rpm
fc014253b27e44c8a230f936d7eadf9e  7.2/RPMS/tcpdump-3.6.2-2.2mdk.i586.rpm
5e6091d2f916b180ffc80d60e2005a49  7.2/SRPMS/libpcap-0.6.2-3.2mdk.src.rpm
a997724147a333e27e72670bff28e5ee  7.2/SRPMS/tcpdump-3.6.2-2.2mdk.src.rpm

References