Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access privileged options" via a long word in an options file, which triggers a heap-based buffer overflow that "[corrupts] security-relevant variables."
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade ppp | Jul 30, 2024 | Nov 15, 2014 |
| Gentoo Linux | — | Upgrade net-dialup/ppp. | Oct 30, 2017 | Nov 15, 2014 |
| Huawei Euleros 2_0_sp2 | — | Upgrade ppp | Dec 4, 2019 | Nov 15, 2014 |
| Huawei Euleros 2_0_sp3 | — | Upgrade ppp | Dec 18, 2019 | Nov 15, 2014 |
| Huawei Euleros 2_0_sp5 | — | Upgrade ppp | Sep 24, 2019 | Nov 15, 2014 |
| Oracle Solaris | — | Upgrade consolidation/osnet/osnet-incorporation to version 0.5.11-0.175.3.0.0.30.0 on Solaris 11.3Upgrade service/network/dhcp to version 0.5.11-0.175.2.10.0.1.2 on Solaris 11.2Upgrade system/network/ppp to version 0.5.11-0.175.2.10.0.1.2 on Solaris 11.2 | May 29, 2017 | Nov 15, 2014 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 10, 2014 |
| Suse | — | Upgrade ppp-develUpgrade ppp | Dec 18, 2015 | Sep 3, 2014 |
| Ubuntu | — | Upgrade ppp | Nov 8, 2024 | Nov 15, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub