PPTP.Negative.Read.BufferOveflow

description-logoDescription

This indicates a buffer overflow vulnerability in Linux PPTP server.


Point to Point Tunneling Protocol (PPTP) is typically used by mobile users to establish a Virtual Private Network (VPN) tunnel over the public internet to their corporate networks. Due to inapt sanitization of user input data, an attacker can exploit this vulnerability in several calculation routines within the server and execute arbitrary code on the target system.

affected-products-logoAffected Products

PPTP Server versions up to 1.1.4 -b3 and 1.1.3 -20030409

Impact logoImpact

Attackers can execute arbitrary code on infected machine

recomended-action-logoRecommended Actions

Apply appropriate patches or upgrade the system to the latest non-vulnerable version from the following URL:
http://sourceforge.net/project

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-02 16.972
2019-05-09 14.610 Default_action:pass:drop
2019-05-01 14.605 Sig Added

References

1 1