CVE-2004-0183Out-of-bounds Read in Tcpdump

CWE-125Out-of-bounds Read7 documents7 sources
Severity
5.0MEDIUMNVD
EPSS
30.2%
top 3.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 4
Latest updateApr 29

Description

TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/tcpdump< tcpdump 3.7.2-4 (bookworm)
Debiantcpdump/tcpdump< 3.7.2-4+3
NVDtcpdump/tcpdump3.8.1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-35m2-7wwc-q3px: TCPDUMP 32022-04-29
OSV
CVE-2004-0183: TCPDUMP 32004-05-04

📋Vendor Advisories

2
Red Hat
security flaw2004-03-29
Debian
CVE-2004-0183: tcpdump - TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (...2004

📐Framework References

1
CWE
Out-of-bounds Read

💬Community

1
Bugzilla
CVE-2004-0183 security flaw2018-08-16
CVE-2004-0183 — Out-of-bounds Read in Debian Tcpdump | cvebase