Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tcpdump tcpdump vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2019-1010220
tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: "ND_PRINT((ndo, "%s", buf));", in function named "print_prefix", in "pr...
Tcpdump Tcpdump 4.9.2
4.3
CVSSv2
CVE-2017-16808
tcpdump prior to 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c.
Tcpdump Tcpdump 4.9.2
5
CVSSv2
CVE-2020-8036
The tok2strbuf() function in tcpdump 4.10.0-PRE-GIT was used by the SOME/IP dissector in an unsafe way.
Tcpdump Tcpdump 4.10.0
5
CVSSv2
CVE-2014-8768
Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 up to and including 4.6.2, when in verbose mode, allow remote malicious users to cause a denial of service (segmentation fault and crash) via a crafted length value in a Geonet frame.
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Canonical Ubuntu Linux 14.10
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 10.04
Canonical Ubuntu Linux 12.04
Oracle Solaris 11.2
Redhat Tcpdump 4.6.2
Redhat Tcpdump 4.6.0
Redhat Tcpdump 4.6.1
Redhat Tcpdump 4.5.1
Redhat Tcpdump 4.5.2
Redhat Tcpdump 4.5.0
1 EDB exploit
4.6
CVSSv2
CVE-2003-0194
tcpdump does not properly drop privileges to the pcap user when starting up.
Redhat Tcpdump 3.6.3-3
Redhat Tcpdump 3.7.2-1
Redhat Tcpdump 3.4-39
Redhat Tcpdump 3.6.2-9
Redhat Tcpdump 3.6.2-12
Redhat Linux 7.1
Redhat Linux 7.3
Redhat Linux 9.0
Redhat Linux 7.2
Redhat Linux 8.0
5
CVSSv2
CVE-2015-3138
print-wb.c in tcpdump prior to 4.7.4 allows remote malicious users to cause a denial of service (segmentation fault and process crash).
Tcpdump Tcpdump
Opensuse Project Leap 42.1
Opensuse Leap 42.2
5
CVSSv2
CVE-2005-1278
The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and previous versions allows remote malicious users to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet.
Lbl Tcpdump
1 EDB exploit
5
CVSSv2
CVE-2005-1280
The rsvp_print function in tcpdump 3.9.1 and previous versions allows remote malicious users to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4.
Lbl Tcpdump
1 EDB exploit
4.3
CVSSv2
CVE-2021-41043
Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact.
Tcpdump Tcpslice
5
CVSSv2
CVE-2019-15161
rpcapd/daemon.c in libpcap prior to 1.9.1 mishandles certain length values because of reuse of a variable. This may open up an attack vector involving extra data at the end of a request.
Tcpdump Libpcap
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4644
unprivileged
CVE-2024-3494
CVE-2024-22460
CVE-2024-26026
CVE-2024-23473
firewall
CVE-2024-28889
XML external entity
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »