CVE-2014-9140

Published: 03 December 2014

Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and earlier allows remote attackers to cause a denial of service (crash) cia a crafted PPP packet.

Priority

Medium

Status

Package Release Status
tcpdump
Launchpad, Ubuntu, Debian
Upstream
Released (4.6.2-3)
Ubuntu 14.04 ESM (Trusty Tahr)
Released (4.5.1-2ubuntu1.1)
Patches:
Upstream: https://github.com/the-tcpdump-group/tcpdump/commit/0f95d441e4b5d7512cc5c326c8668a120e048eda