5
CVSSv2

CVE-2001-0026

Published: 12/02/2001 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

rp-pppoe PPPoE client allows remote malicious users to cause a denial of service via the Clamp MSS option and a TCP packet with a zero-length TCP option.

Vulnerable Product Search on Vulmon Subscribe to Product

roaring penguin pppoe 2.0

roaring penguin pppoe 2.4

roaring penguin pppoe 2.1

roaring penguin pppoe 2.2

roaring penguin pppoe 2.3

Exploits

source: wwwsecurityfocuscom/bid/2098/info Roaring Penguin Software's PPPoE is a freeware PPP over Ethernet client often used by ADSL subscribers running Linux or NetBSD PPPoE contains a possibly remotely exploitable denial of service vulnerability in its handling of TCP packets when the Clamp_MSS option is used If PPPoE recieves a malf ...