CVE-2018-16227
HIGHTcpdump < 4.9.3 - Out-of-Bounds Read
Title source: ruleDescription
The IEEE 802.11 parser in tcpdump before 4.9.3 has a buffer over-read in print-802_11.c for the Mesh Flags subfield.
Scores
CVSS v3
7.5
EPSS
0.0452
EPSS Percentile
89.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-125
Status
published
Affected Products (12)
tcpdump/tcpdump
< 4.9.3
apple/mac_os_x
< 10.15.2
debian/debian_linux
debian/debian_linux
debian/debian_linux
fedoraproject/fedora
fedoraproject/fedora
fedoraproject/fedora
opensuse/leap
opensuse/leap
redhat/enterprise_linux
redhat/enterprise_linux
Timeline
Published
Oct 03, 2019
Tracked Since
Feb 18, 2026