CVE-2002-1755

Source
https://nvd.nist.gov/vuln/detail/CVE-2002-1755
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2002-1755.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2002-1755
Downstream
Published
2002-12-31T05:00:00Z
Modified
2025-08-09T19:01:27Z
Summary
[none]
Details

tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC.

References

Affected packages