PoPToP Negative Read exploit v1.3

Vulnerability exploited: CAN-2003-0213 - BID-7316

Category: Exploits/Remote

Exploits a buffer overflow in PoPToP PPTP daemon.
PoPToP PPTP server before 1.1.4-b3 allows remote attackers to execute code via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.

Supported Systems:
    RedHat Linux 9 (i386)


This module is included in the latest version of CORE IMPACT, the first automated comprehensive penetration testing product for accurately identifying information security risks. Click here to learn more about the product.