Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown
CVE-2018-16758
Disclosure Date: October 10, 2018 (last updated November 08, 2023)
Missing message authentication in the meta-protocol in Tinc VPN version 1.0.34 and earlier allows a man-in-the-middle attack to disable the encryption of VPN packets.
0
Attacker Value
Unknown
CVE-2013-1428
Disclosure Date: April 26, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in the receive_tcppacket function in net_packet.c in tinc before 1.0.21 and 1.1 before 1.1pre7 allows remote authenticated peers to cause a denial of service (crash) or possibly execute arbitrary code via a large TCP packet.
0
Attacker Value
Unknown
CVE-2005-0906
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Buffer overflow in a player logging function in the Tincat network library 2.x before 2.0.28, as used in games such as Sacred and The Settlers: Heritage of Kings, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2002-1755
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC.
0
Attacker Value
Unknown
CVE-2001-1505
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.
0