Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-1428

EPSS 65.52% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-1428

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Stack-based buffer overflow in the receive_tcppacket function in net_packet.c in tinc before 1.0.21 and 1.1 before 1.1pre7 allows remote authenticated peers to cause a denial of service (crash) or possibly execute arbitrary code via a large TCP packet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
tinc ‘receive_tcppacket’函数栈缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
tinc是一个开源的VPN解决方案。 tinc 1.0.21之前的版本和1.1pre7之前的1.1版本中的net_packet.c中的‘receive_tcppacket’函数中存在基于栈的缓冲区溢出漏洞。远程经过授权建立连接同等设备(VPN)的另一端可通过过大的TCP数据包利用该漏洞造成拒绝服务(崩溃)或可能执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-1428

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-1428

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-04-26 · 10 CVEs total

CVE-2012-5220HP Data Protector 未明安全漏洞
CVE-2013-0727Global Mapper 不安全库加载漏洞
CVE-2013-2306jigbrowser+ for Android 地址栏欺骗漏洞
CVE-2013-2307Yahoo! Browser for Android 地址栏欺骗漏洞
CVE-2013-2709WordPress 插件 跨站请求伪造漏洞
CVE-2013-3238phpMyAdmin 多个任意PHP代码执行漏洞
CVE-2013-3239phpMyAdmin ‘filename_template’远程代码执行漏洞
CVE-2013-3240phpMyAdmin ‘what’参数本地文件包含漏洞
CVE-2013-3241phpMyAdmin ‘$GLOBALS’数组未授权访问漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2013-1428

No comments yet


Leave a comment