DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
PopTop PPTP Negative Read() argument remote buffer overflow
- haywardi
- Topic Author
- Offline
- Member
Less
More
- Posts: 187
- Thank yous received: 0
31 Jan 2016 17:46 #85216
by haywardi
Iain
PopTop PPTP Negative Read() argument remote buffer overflow was created by haywardi
As some of you may be aware I'm trying to secure a 2850 for PCI/DSS compliance.
I seem to have cured most of the problems now but have two remaining.
This is the second of the problems and I'm sure it's caused by the 2850!
Firstly I do use PPTP for a VPN connection and the scan is identifying port 1723/tcp as the one with the problem further confirming that its the router that has the problem.
Suffice to say I need VPN so switching it off isn't an option.
I can't find any patches that address the problem (i'm running firmware 3.6.8.2, which I believe is the latest generally available version).
Has anyone experienced this, if so how do I resolve?
Thanks in advance.
Iain
I seem to have cured most of the problems now but have two remaining.
This is the second of the problems and I'm sure it's caused by the 2850!
Firstly I do use PPTP for a VPN connection and the scan is identifying port 1723/tcp as the one with the problem further confirming that its the router that has the problem.
Suffice to say I need VPN so switching it off isn't an option.
I can't find any patches that address the problem (i'm running firmware 3.6.8.2, which I believe is the latest generally available version).
Has anyone experienced this, if so how do I resolve?
Thanks in advance.
Iain
Iain
Please Log in or Create an account to join the conversation.
- admin
- Offline
- Site Admin
Less
More
- Posts: 1723
- Thank yous received: 0
01 Feb 2016 12:47 #85220
by admin
Forum Administrator
Replied by admin on topic Re: PopTop PPTP Negative Read() argument remote buffer overf
I'm not sure I follow. I think you're saying that you're failing the DSS test because
you have a PPTP service open...and DSS doesn't allow that, so surely the only
solution is to disable PPTP and provide remote access via some other method or IP address?
you have a PPTP service open...and DSS doesn't allow that, so surely the only
solution is to disable PPTP and provide remote access via some other method or IP address?
Forum Administrator
Please Log in or Create an account to join the conversation.
- haywardi
- Topic Author
- Offline
- Member
Less
More
- Posts: 187
- Thank yous received: 0
01 Feb 2016 13:36 #85222
by haywardi
Iain
Replied by haywardi on topic Re: PopTop PPTP Negative Read() argument remote buffer overf
Hi,
No that's not what is being highlighted and DSS compliance does not discriminate the protocol used in VPN/PPTP.
The official text is "A Buffer overflow vulnerability was discovered in the PoPToP PPTP. The problem occurs due to insufficient sanity checked when referencing user-suppliers input stored in the 'Length' variabled." They are also saying patches exist for popular operating systems.
Unfortunately DrayOS is not one of the operating systems listed with a patch.
Hence why I'm asking if anyone is aware of the vulnerability or is it a false positive which can happen.
Iain
No that's not what is being highlighted and DSS compliance does not discriminate the protocol used in VPN/PPTP.
The official text is "A Buffer overflow vulnerability was discovered in the PoPToP PPTP. The problem occurs due to insufficient sanity checked when referencing user-suppliers input stored in the 'Length' variabled." They are also saying patches exist for popular operating systems.
Unfortunately DrayOS is not one of the operating systems listed with a patch.
Hence why I'm asking if anyone is aware of the vulnerability or is it a false positive which can happen.
Iain
Iain
Please Log in or Create an account to join the conversation.
- haywardi
- Topic Author
- Offline
- Member
Less
More
- Posts: 187
- Thank yous received: 0
02 Feb 2016 14:17 #85241
by haywardi
Iain
Replied by haywardi on topic Re: PopTop PPTP Negative Read() argument remote buffer overf
Ok a quick update.
I switched to IPsec and this has gone away!
I switched to IPsec and this has gone away!
Iain
Please Log in or Create an account to join the conversation.
- admin
- Offline
- Site Admin
Less
More
- Posts: 1723
- Thank yous received: 0
03 Feb 2016 15:51 #85252
by admin
Forum Administrator
Replied by admin on topic Re: PopTop PPTP Negative Read() argument remote buffer overf
I think it's a false positive; as you say the product uses DrayOS which is completely
proprietary and doesn't use any of the common Linux libraries.
proprietary and doesn't use any of the common Linux libraries.
Forum Administrator
Please Log in or Create an account to join the conversation.
Moderators: Chris
Copyright © 2025 DrayTek