MEDIUM
Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via (1) a packet with no data or (2) a large packet, which prevents Vavoom from discarding the packet from the socket
Published Mar 28, 2006
5.0
MEDIUMCVSS 2.0
EPSS 1.70%
Description
Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via (1) a packet with no data or (2) a large packet, which prevents Vavoom from discarding the packet from the socket.
Affected products
No data.
OR
- 1.1
- 1.2
- 1.3
- 1.4
- 1.4_beta
- 1.5
- 1.5.1
- 1.5_beta
- 1.6
- 1.7
- 1.7_beta_1
- 1.7_beta_2
- 1.7_beta_3
- 1.7_beta_4
- 1.7_beta_5
- 1.8
- 1.9
- 1.10
- 1.11
- 1.11.1
- 1.11.2
- 1.12
- 1.14
- 1.15
- 1.15.1
- 1.15.2
- 1.15.3
- 1.15_beta_1
- 1.16
- 1.16.1
- 1.17
- 1.18
- 1.19
- 1.19.1
- 1.666
- 1.666_beta_1
- 1.666_beta_2
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (5)
- http://aluigi.altervista.org/adv/vaboom-adv.txt x_refsource_MISCVendor Advisory
- http://secunia.com/advisories/19388 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.securityfocus.com/bid/17261 vdb-entryx_refsource_BIDExploit
- http://www.vupen.com/english/advisories/2006/1104 vdb-entryx_refsource_VUPEN
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25454 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://aluigi.altervista.org/adv/vaboom-adv.txt | x_refsource_MISCVendor Advisory | |
| http://secunia.com/advisories/19388 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.securityfocus.com/bid/17261 | vdb-entryx_refsource_BIDExploit | |
| http://www.vupen.com/english/advisories/2006/1104 | vdb-entryx_refsource_VUPEN | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/25454 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 28, 2006
Updated Aug 7, 2024
Reserved Mar 28, 2006
Link CVE-2006-1408
CISA Vulnrichment
Updated n/a