Vulnerabilities
171 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2024-8006 +1 in the same advisory: …7256 | Remote packet capture support is disabled by default in libpcap. Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture support enabled, one of the functions that become available is pcap_findalldevs_ex(). One of the function arguments can be a filesystem path, which normally means a directory with input data files. When the specified path cannot be used as a directory, the function receives NULL from opendir(), but does not check the return value and passes the NULL value to readdir(), which causes a NULL pointer derefence. NVD description · AI analysis pending | 4.4 | <1% |
| — | ||
| CVE-2023-1801 | The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet. The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet. NVD description · AI analysis pending | 6.5 | <1% |
| — | ||
| CVE-2019-15167 | The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463. The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463. NVD description · AI analysis pending | 9.1 | 1% |
| — | ||
| CVE-2021-41043 | Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact. Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact. NVD description · AI analysis pending | 5.5 | <1% | PoC |
| — | |
| CVE-2020-8037 +1 in the same advisory: …8036 | The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory. The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory. NVD description · AI analysis pending | 7.5 | 3% |
| — | ||
| CVE-2019-15163 | rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails. rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails. NVD description · AI analysis pending | 7.5 group max | 4% |
| — | ||
| CVE-2018-10103 | tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2). tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2). NVD description · AI analysis pending | 9.8 group max | 4% |
| — | ||
| CVE-2018-14879 | The command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file(). The command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file(). NVD description · AI analysis pending | 7.0 | 5% |
| — | ||
| CVE-2019-1010220 | tcpdump.org tcpdump 4.9.2 is affected by: tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: "ND_PRINT((ndo, "%s", buf));", in function named "print_prefix", in "print-hncp.c". The attack vector is: The victim must open a specially crafted pcap file. NVD description · AI analysis pending | 3.3 | 1% |
| — | ||
| CVE-2018-19519 | In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization. In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization. NVD description · AI analysis pending | 5.5 | 2% | PoC |
| — | |
| CVE-2017-16808 | tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c. tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c. NVD description · AI analysis pending | 5.5 | 3% |
| — | ||
| CVE-2017-13051 | The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print(). The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print(). NVD description · AI analysis pending | 9.8 | 4% |
| — |