Search CVE reports


Toggle filters

1 – 10 of 185 results


CVE-2024-2397

Medium priority
Not affected

Due to a bug in packet data buffers management, the PPP printer in tcpdump can enter an infinite loop when reading a crafted DLT_PPP_SERIAL .pcap savefile. This problem does not affect any tcpdump release, but it affected the git...

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-1801

Medium priority
Not affected

The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Not affected Not affected Not affected
Show less packages

CVE-2020-8037

Low priority

Some fixes available 3 of 5

The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Not affected Not affected Fixed Fixed
Show less packages

CVE-2020-8036

Low priority
Not affected

The tok2strbuf() function in tcpdump 4.10.0-PRE-GIT was used by the SOME/IP dissector in an unsafe way.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Not affected Not affected Not affected
Show less packages

CVE-2019-15167

Medium priority

Some fixes available 3 of 4

The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Fixed
Show less packages

CVE-2019-15166

Medium priority

Some fixes available 3 of 4

lmp_print_data_link_subobjs() in print-lmp.c in tcpdump before 4.9.3 lacks certain bounds checks.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Fixed
Show less packages

CVE-2019-1010220

Low priority

Some fixes available 3 of 4

tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: “ND_PRINT((ndo, ”%s”, buf));”, in function named...

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Fixed
Show less packages

CVE-2018-19519

Low priority

Some fixes available 3 of 4

In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Fixed
Show less packages

CVE-2018-19325

Low priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-14466. Reason: This candidate is a duplicate of CVE-2018-14466. Notes: All CVE users should reference CVE-2018-14466 instead of this candidate. All references...

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Not affected
Show less packages

CVE-2018-16452

Medium priority

Some fixes available 3 of 4

The SMB parser in tcpdump before 4.9.3 has stack exhaustion in smbutil.c:smb_fdata() via recursion.

1 affected package

tcpdump

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tcpdump Fixed
Show less packages