ZeroHour

Vulnerabilities

171 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-8006
+1 in the same advisory: …7256
Remote packet capture support is disabled by default in libpcap.

Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture support enabled, one of the functions that become available is pcap_findalldevs_ex(). One of the function arguments can be a filesystem path, which normally means a directory with input data files. When the specified path cannot be used as a directory, the function receives NULL from opendir(), but does not check the return value and passes the NULL value to readdir(), which causes a NULL pointer derefence.

NVD description · AI analysis pending
4.4<1%
  • tcpdump libpcap
CVE-2023-1801
The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet.

The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet.

NVD description · AI analysis pending
6.5<1%
  • tcpdump tcpdump
CVE-2019-15167
The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.

The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.

NVD description · AI analysis pending
9.11%
  • tcpdump tcpdump
CVE-2021-41043
Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact.

Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact.

NVD description · AI analysis pending
5.5<1% PoC
  • tcpdump tcpslice
CVE-2020-8037
+1 in the same advisory: …8036
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.

The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.

NVD description · AI analysis pending
7.53%
  • tcpdump tcpdump
  • tcpdump debian linux
  • tcpdump fedora
  • +1 more
CVE-2019-15163
+4 in the same advisory: …15164 …15165 …15161 …15162
rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails.

rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails.

NVD description · AI analysis pending
7.5
group max
4%
  • tcpdump libpcap
CVE-2018-10103
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).

tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).

NVD description · AI analysis pending
9.8
group max
4%
  • tcpdump tcpdump
CVE-2018-14879
The command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file().

The command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file().

NVD description · AI analysis pending
7.05%
  • f5 traffix signaling delivery controller
  • f5 tcpdump
  • f5 mac os x
  • +1 more
CVE-2019-1010220
tcpdump.org tcpdump 4.9.2 is affected by:

tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: "ND_PRINT((ndo, "%s", buf));", in function named "print_prefix", in "print-hncp.c". The attack vector is: The victim must open a specially crafted pcap file.

NVD description · AI analysis pending
3.31%
  • tcpdump tcpdump
CVE-2018-19519
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.

In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.

NVD description · AI analysis pending
5.52% PoC
  • tcpdump tcpdump
CVE-2017-16808
tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c.

tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c.

NVD description · AI analysis pending
5.53%
  • tcpdump tcpdump
CVE-2017-13051
The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().

The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().

NVD description · AI analysis pending
9.84%
  • tcpdump tcpdump