tcpdump records
181 published records for vendor tcpdump.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 99.4%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read108
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer45
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')4
- CWE-20 Improper Input Validation3
- CWE-674 Uncontrolled Recursion2
- CWE-190 Integer Overflow or Wraparound2
The weakness classes this vendor ships most often: where to look.
CWEAll records
181 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
60This week | CVE-2007-3798Proof of concept | Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via craftcpdump · tcpdump · CWE-252 | Critical9.8 | — | 70.4% | Jul 16, 2007 |
41Plan | CVE-2017-11543No exploit | tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c.tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 6.2% | Jul 22, 2017 |
41Plan | CVE-2017-5484No exploit | The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 6.2% | Jan 27, 2017 |
41Plan | CVE-2017-5204No exploit | The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 6.0% | Jan 27, 2017 |
41Plan | CVE-2016-8575No exploit | The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2017-5482.tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 5.5% | Jan 27, 2017 |
41Plan | CVE-2017-5342No exploit | In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in prtcpdump · tcpdump · CWE-119 | Critical9.8 | — | 5.5% | Jan 27, 2017 |
41Plan | CVE-2017-5482No exploit | The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575.tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 5.5% | Jan 27, 2017 |
41Plan | CVE-2017-5341No exploit | The OTV parser in tcpdump before 4.9.0 has a buffer overflow in print-otv.c:otv_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 5.3% | Jan 27, 2017 |
40Plan | CVE-2017-13050No exploit | The RPKI-Router parser in tcpdump before 4.9.2 has a buffer over-read in print-rpki-rtr.c:rpki_rtr_pdu_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.6% | Sep 14, 2017 |
40Plan | CVE-2017-13041No exploit | The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_nodeinfo_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.6% | Sep 14, 2017 |
40Plan | CVE-2017-13040No exploit | The MPTCP parser in tcpdump before 4.9.2 has a buffer over-read in print-mptcp.c, several functions.tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.6% | Sep 14, 2017 |
40Plan | CVE-2017-13038No exploit | The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:handle_mlppp().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.5% | Sep 14, 2017 |
40Plan | CVE-2017-13019No exploit | The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.5% | Sep 14, 2017 |
40Plan | CVE-2017-13033No exploit | The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 4.3% | Sep 14, 2017 |
40Plan | CVE-2018-10103No exploit | tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).tcpdump · tcpdump · CWE-20 | Critical9.8 | — | 4.1% | Oct 3, 2019 |
40Plan | CVE-2016-7983No exploit | The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 3.9% | Jan 27, 2017 |
40Plan | CVE-2018-10105No exploit | tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2).tcpdump · tcpdump · CWE-20 | Critical9.8 | — | 3.9% | Oct 3, 2019 |
40Plan | CVE-2017-5202No exploit | The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 3.8% | Jan 27, 2017 |
40Plan | CVE-2017-5203No exploit | The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 3.8% | Jan 27, 2017 |
40Plan | CVE-2017-11542No exploit | tcpdump 4.9.0 has a heap-based buffer over-read in the pimv1_print function in print-pim.c.tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 3.8% | Jul 22, 2017 |
40Plan | CVE-2017-11541No exploit | tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c.tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 3.8% | Jul 22, 2017 |
40Plan | CVE-2017-13051No exploit | The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 3.7% | Sep 14, 2017 |
40Plan | CVE-2011-1935No exploit | pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might atcpdump · libpcap | Critical9.8 | — | 3.6% | Oct 20, 2017 |
40Plan | CVE-2017-5205No exploit | The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print().tcpdump · tcpdump · CWE-119 | Critical9.8 | — | 3.6% | Jan 27, 2017 |
40Plan | CVE-2017-13028No exploit | The BOOTP parser in tcpdump before 4.9.2 has a buffer over-read in print-bootp.c:bootp_print().tcpdump · tcpdump · CWE-125 | Critical9.8 | — | 3.6% | Sep 14, 2017 |
- CVE-2007-379860This week
Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via craf
CriticalCVSS 9.8Proof of conceptEPSS 70%tcpdump · tcpdumpJul 16, 2007
- CVE-2017-1154341Plan
tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c.
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJul 22, 2017
- CVE-2017-548441Plan
The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_print().
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-520441Plan
The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print().
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJan 27, 2017
- CVE-2016-857541Plan
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2017-5482.
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-534241Plan
In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in pr
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-548241Plan
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575.
CriticalCVSS 9.8No exploitEPSS 6%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-534141Plan
The OTV parser in tcpdump before 4.9.0 has a buffer overflow in print-otv.c:otv_print().
CriticalCVSS 9.8No exploitEPSS 5%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-1305040Plan
The RPKI-Router parser in tcpdump before 4.9.2 has a buffer over-read in print-rpki-rtr.c:rpki_rtr_pdu_print().
CriticalCVSS 9.8No exploitEPSS 5%tcpdump · tcpdumpSep 14, 2017
- CVE-2017-1304140Plan
The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_nodeinfo_print().
CriticalCVSS 9.8No exploitEPSS 5%tcpdump · tcpdumpSep 14, 2017
- CVE-2017-1304040Plan
The MPTCP parser in tcpdump before 4.9.2 has a buffer over-read in print-mptcp.c, several functions.
CriticalCVSS 9.8No exploitEPSS 5%tcpdump · tcpdumpSep 14, 2017
- CVE-2017-1303840Plan
The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:handle_mlppp().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpSep 14, 2017
- CVE-2017-1301940Plan
The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpSep 14, 2017
- CVE-2017-1303340Plan
The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpSep 14, 2017
- CVE-2018-1010340Plan
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpOct 3, 2019
- CVE-2016-798340Plan
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJan 27, 2017
- CVE-2018-1010540Plan
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2).
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpOct 3, 2019
- CVE-2017-520240Plan
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-520340Plan
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-1154240Plan
tcpdump 4.9.0 has a heap-based buffer over-read in the pimv1_print function in print-pim.c.
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJul 22, 2017
- CVE-2017-1154140Plan
tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c.
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJul 22, 2017
- CVE-2017-1305140Plan
The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpSep 14, 2017
- CVE-2011-193540Plan
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might a
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · libpcapOct 20, 2017
- CVE-2017-520540Plan
The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpJan 27, 2017
- CVE-2017-1302840Plan
The BOOTP parser in tcpdump before 4.9.2 has a buffer over-read in print-bootp.c:bootp_print().
CriticalCVSS 9.8No exploitEPSS 4%tcpdump · tcpdumpSep 14, 2017