Related Vulnerabilities: CVE-2016-7923  

The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().

AVG-161 tcpdump 4.8.1-1 4.9.0-1 Critical Fixed

02 Feb 2017 ASA-201702-1 AVG-161 tcpdump Critical arbitrary code execution

https://www.mail-archive.com/debian-bugs-dist@lists.debian.org/msg1494526.html