Vulnerabilities
Vulnerable Software
Tcpdump:  Security Vulnerabilities
tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c.
CVSS Score
9.8
EPSS Score
0.136
Published
2017-07-23
tcpdump 4.9.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packet data. The crash occurs in the EXTRACT_16BITS function, called from the stp_print function for the Spanning Tree Protocol.
CVSS Score
7.5
EPSS Score
0.019
Published
2017-07-08
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2017-5482.
CVSS Score
9.8
EPSS Score
0.044
Published
2017-01-28
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().
CVSS Score
9.8
EPSS Score
0.011
Published
2017-01-28
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
CVSS Score
9.8
EPSS Score
0.011
Published
2017-01-28
The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print().
CVSS Score
9.8
EPSS Score
0.022
Published
2017-01-28
The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print().
CVSS Score
9.8
EPSS Score
0.011
Published
2017-01-28
The OTV parser in tcpdump before 4.9.0 has a buffer overflow in print-otv.c:otv_print().
CVSS Score
9.8
EPSS Score
0.044
Published
2017-01-28
In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in print-ether.c:ether_print().
CVSS Score
9.8
EPSS Score
0.044
Published
2017-01-28
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575.
CVSS Score
9.8
EPSS Score
0.044
Published
2017-01-28


Contact Us

Shodan ® - All rights reserved