Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tcpdump vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2014-9140
Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and previous versions allows remote malicious users to cause a denial of service (crash) cia a crafted PPP packet.
Redhat Tcpdump
7.5
CVSSv2
CVE-2002-0380
Buffer overflow in tcpdump 3.6.2 and previous versions allows remote malicious users to cause a denial of service and possibly execute arbitrary code via an NFS packet.
Lbl Tcpdump
5
CVSSv2
CVE-2019-15161
rpcapd/daemon.c in libpcap prior to 1.9.1 mishandles certain length values because of reuse of a variable. This may open up an attack vector involving extra data at the end of a request.
Tcpdump Libpcap
5
CVSSv2
CVE-2019-15162
rpcapd/daemon.c in libpcap prior to 1.9.1 on non-Windows platforms provides details about why authentication failed, which might make it easier for malicious users to enumerate valid usernames.
Tcpdump Libpcap
5
CVSSv2
CVE-2019-15163
rpcapd/daemon.c in libpcap prior to 1.9.1 allows malicious users to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails.
Tcpdump Libpcap
5
CVSSv2
CVE-2019-15164
rpcapd/daemon.c in libpcap prior to 1.9.1 allows SSRF because a URL may be provided as a capture source.
Tcpdump Libpcap
5
CVSSv2
CVE-2004-0057
The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and previous versions allows remote malicious users to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values...
Lbl Tcpdump
7.5
CVSSv2
CVE-2011-1935
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote malicious users to send arbitrary data while avoiding detection via crafted packets.
Tcpdump Libpcap
7.5
CVSSv2
CVE-2002-1350
The BGP decoding routines in tcpdump 3.6.x prior to 3.7 do not properly copy data, which allows remote malicious users to cause a denial of service (application crash).
Lbl Tcpdump
7.5
CVSSv2
CVE-2001-1279
Buffer overflow in print-rx.c of tcpdump 3.x (probably 3.6x) allows remote malicious users to cause a denial of service and possibly execute arbitrary code via AFS RPC packets with invalid lengths that trigger an integer signedness error, a different vulnerability than CVE-2000-1...
Lbl Tcpdump 3.6.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
cross-site request forgery
unauthorized
CVE-2024-33925
reflected XSS
CVE-2023-51580
CVE-2023-51579
CVE-2015-2051
CVE-2023-51609
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »