Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PoPToP PPTP read()参数负值远程缓冲区溢出漏洞
Vulnerability Description
PoPToP PPTP一般用于建立VPN连接,使用在Windows操作系统下。 PoPToP PPTP在引用用户提供的输入用于各种计算时缺少正确过滤检查,远程攻击者可以利用这个漏洞破坏服务程序进程的敏感内存,可能以PoPToP进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A