int(597)

Vulnerability Bulletins


Actualización de Tcpdump que soluciona varias vulnerabilidades

Vulnerability classification

Property Value
Confidence level Oficial
Impact Obtener acceso
Dificulty Experto
Required attacker level Acceso remoto sin cuenta a un servicio exotico

System information

Property Value
Affected manufacturer GNU/Linux
Affected software Tcpdump (<=3.8.1)

Description

Tcpdump es una herramienta que permite la monitorización del tráfico de red.

En las versiones 2.81 y anteriores de tcpdump se han descubierto varias vulnerabilidades en las rutinas de decodificación de paquetes ISAKMP y RADIUS que podrían resultar en una ataque de Denegación de Servicio contra la máquina corriendo Tcpdump o incluso la ejecución de código con los privilegios del usuario 'pcap'.

Solution



Actualización de software

Linux RedHat

RedHat 9.0
i386
ftp://updates.redhat.com/9/en/os/i386/arpwatch-2.1a11-7.9.1.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/libpcap-0.7.2-7.9.1.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/tcpdump-3.7.2-7.9.1.i386.rpm
SRPMS
ftp://updates.redhat.com/9/en/os/SRPMS/tcpdump-3.7.2-7.9.1.src.rpm

Linux Mandrake

Mandrake 9.1
i386
ftp://ftp.rediris.es/mirror/mandrake/updates/9.1/RPMS/tcpdump-3.7.2-2.1.91mdk.i586.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/9.1/SRPMS/tcpdump-3.7.2-2.1.91mdk.src.rpm
PPC
ftp://ftp.rediris.es/mirror/mandrake/updates/ppc/9.1/RPMS/tcpdump-3.7.2-2.1.91mdk.ppc.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/ppc/9.1/SRPMS/tcpdump-3.7.2-2.1.91mdk.src.rpm

Mandrake 9.2
i386
ftp://ftp.rediris.es/mirror/mandrake/updates/9.2/RPMS/tcpdump-3.7.2-2.1.92mdk.i586.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/9.2/SRPMS/tcpdump-3.7.2-2.1.92mdk.src.rpm
AMD64
ftp://ftp.rediris.es/mirror/mandrake/updates/amd64/9.2/RPMS/tcpdump-3.7.2-2.1.92mdk.amd64.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/amd64/9.2/SRPMS/tcpdump-3.7.2-2.1.92mdk.src.rpm

Multi Network Firewall 8.2
i386
ftp://ftp.rediris.es/mirror/mandrake/updates/mnf8.2/RPMS/tcpdump-3.7.2-2.1.M82mdk.i586.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/mnf8.2/SRPMS/tcpdump-3.7.2-2.1.M82mdk.src.rpm

Corporate Server 2
i386
ftp://ftp.rediris.es/mirror/mandrake/updates/corporate/2.1/RPMS/tcpdump-3.7.2-2.1.C21mdk.i586.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/corporate/2.1/SRPMS/tcpdump-3.7.2-2.1.C21mdk.src.rpm
x86_64
ftp://ftp.rediris.es/mirror/mandrake/updates/x86_64/corporate/2.1/RPMS/tcpdump-3.7.2-2.1.C21mdk.x86_64.rpm
ftp://ftp.rediris.es/mirror/mandrake/updates/x86_64/corporate/2.1/SRPMS/tcpdump-3.7.2-2.1.C21mdk.src.rpm

Linux Debian

Debian 3.0
Source
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7.dsc
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7.diff.gz
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2.orig.tar.gz
Alpha
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_alpha.deb
ARM
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_arm.deb
Intel IA-32
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_i386.deb
Intel IA-64
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_ia64.deb
HP Precision
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_hppa.deb
Motorola 680x0
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_m68k.deb
Big endian MIPS
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_mips.deb
Little endian MIPS
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.4_mipsel.deb
PowerPC
p://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_powerpc.deb
IBM S/390
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_s390.deb
Sun Sparc
http://security.debian.org/pool/updates/main/t/tcpdump/tcpdump_3.6.2-2.7_sparc.deb

Linux SuSe

SuSe 9.0
i386
ftp://ftp.suse.com/pub/suse/i386/update/9.0/rpm/i586/tcpdump-3.7.2-72.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.0/rpm/i586/tcpdump-3.7.2-72.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.0/rpm/src/tcpdump-3.7.2-72.src.rpm
Opteron x86_64
ftp://ftp.suse.com/pub/suse/x86_64/update/9.0/rpm/x86_64/tcpdump-3.7.2-68.x86_64.rpm
ftp://ftp.suse.com/pub/suse/x86_64/update/9.0/rpm/x86_64/tcpdump-3.7.2-68.x86_64.patch.rpm
ftp://ftp.suse.com/pub/suse/x86_64/update/9.0/rpm/src/tcpdump-3.7.2-68.src.rpm

SuSe 8.2
i386
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/tcpdump-3.7.1-341.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/tcpdump-3.7.1-341.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/src/tcpdump-3.7.1-341.src.rpm

SuSe 8.1
i386
ftp://ftp.suse.com/pub/suse/i386/update/8.1/rpm/i586/tcpdump-3.7.1-341.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.1/rpm/i586/tcpdump-3.7.1-341.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.1/rpm/src/tcpdump-3.7.1-341.src.rpm

SuSe 8.0
i386
ftp://ftp.suse.com/pub/suse/i386/update/8.0/n1/tcpdump-3.6.2-330.i386.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.0/n1/tcpdump-3.6.2-330.i386.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.0/zq1/tcpdump-3.6.2-330.src.rpm

SCO
UnixWare 7.1.3up
ftp://ftp.sco.com/pub/unixware7/713/uw713up/

Standar resources

Property Value
CVE CAN-2003-0989
CAN-2004-0055
CAN-2004-0057
BID

Other resources

RedHat Security Advisory RHSA-2004:007-10 Updated tcpdump packages fix various vulnerabilities
https://rhn.redhat.com/errata/RHSA-2004-007.html

MandrakeSoft Security Advisory MDKSA-2004:008 : tcpdump
http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:008

Debian Security Advisory DSA 425-1New tcpdump packages fix multiple vulnerabilities
http://lists.debian.org/debian-security-announce/debian-security-announce-2004/msg00020.html

SUSE Security Announcement: tcpdump (SuSE-SA:2004:002)
http://www.suse.de/de/security/2004_02_tcpdump.html

SCO Security Advisory SCOSA-2004.9
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2004.9/SCOSA-2004.9.txt

Version history

Version Comments Date
1.0 Aviso emitido 2004-02-05
1.1 Aviso emitido por SCO (SCOSA-2004.9) 2004-07-29
Ministerio de Defensa
CNI
CCN
CCN-CERT