Vulnerabilities > Tcpdump

DATE CVE VULNERABILITY TITLE RISK
2017-09-14 CVE-2017-12992 Out-of-bounds Read vulnerability in Tcpdump
The RIPng parser in tcpdump before 4.9.2 has a buffer over-read in print-ripng.c:ripng_print().
network
low complexity
tcpdump CWE-125
critical
9.8
2017-09-14 CVE-2017-12991 Out-of-bounds Read vulnerability in Tcpdump
The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:bgp_attr_print().
network
low complexity
tcpdump CWE-125
critical
9.8
2017-09-14 CVE-2017-12990 Infinite Loop vulnerability in Tcpdump
The ISAKMP parser in tcpdump before 4.9.2 could enter an infinite loop due to bugs in print-isakmp.c, several functions.
network
low complexity
tcpdump CWE-835
7.5
2017-09-14 CVE-2017-12989 Infinite Loop vulnerability in Tcpdump
The RESP parser in tcpdump before 4.9.2 could enter an infinite loop due to a bug in print-resp.c:resp_get_length().
network
low complexity
tcpdump CWE-835
7.5
2017-09-14 CVE-2017-12988 Out-of-bounds Read vulnerability in Tcpdump
The telnet parser in tcpdump before 4.9.2 has a buffer over-read in print-telnet.c:telnet_parse().
network
low complexity
tcpdump CWE-125
critical
9.8
2017-09-14 CVE-2017-12987 Out-of-bounds Read vulnerability in multiple products
The IEEE 802.11 parser in tcpdump before 4.9.2 has a buffer over-read in print-802_11.c:parse_elements().
network
low complexity
tcpdump redhat debian CWE-125
critical
9.8
2017-09-14 CVE-2017-12986 Out-of-bounds Read vulnerability in Tcpdump
The IPv6 routing header parser in tcpdump before 4.9.2 has a buffer over-read in print-rt6.c:rt6_print().
network
low complexity
tcpdump CWE-125
critical
9.8
2017-09-14 CVE-2017-12985 Out-of-bounds Read vulnerability in Tcpdump
The IPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-ip6.c:ip6_print().
network
low complexity
tcpdump CWE-125
critical
9.8
2017-09-14 CVE-2017-12902 Out-of-bounds Read vulnerability in multiple products
The Zephyr parser in tcpdump before 4.9.2 has a buffer over-read in print-zephyr.c, several functions.
network
low complexity
tcpdump redhat debian CWE-125
critical
9.8
2017-09-14 CVE-2017-12901 Out-of-bounds Read vulnerability in Tcpdump
The EIGRP parser in tcpdump before 4.9.2 has a buffer over-read in print-eigrp.c:eigrp_print().
network
low complexity
tcpdump CWE-125
critical
9.8