[email protected]

6 exploits Active since Nov 2017
CVE-2017-16808 WRITEUP MEDIUM WRITEUP
tcpdump <4.9.3 - Buffer Overflow
tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c.
CVSS 5.5
CVE-2018-10103 WRITEUP CRITICAL WRITEUP
tcpdump <4.9.3 - Info Disclosure
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).
CVSS 9.8
CVE-2018-10105 WRITEUP CRITICAL WRITEUP
tcpdump <4.9.3 - Info Disclosure
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2).
CVSS 9.8
CVE-2018-14463 WRITEUP HIGH WRITEUP
tcpdump <4.9.3 - Buffer Overflow
The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 2, a different vulnerability than CVE-2019-15167.
CVSS 7.5
CVE-2018-16227 WRITEUP HIGH WRITEUP
Tcpdump < 4.9.3 - Out-of-Bounds Read
The IEEE 802.11 parser in tcpdump before 4.9.3 has a buffer over-read in print-802_11.c for the Mesh Flags subfield.
CVSS 7.5
CVE-2018-16451 WRITEUP HIGH WRITEUP
Tcpdump < 4.9.3 - Out-of-Bounds Read
The SMB parser in tcpdump before 4.9.3 has buffer over-reads in print-smb.c:print_trans() for \MAILSLOT\BROWSE and \PIPE\LANMAN.
CVSS 7.5