CVE-2011-1935
published 2017-10-20CVE-2011-1935: pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote…
PriorityP354critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
3.65%
88.3th percentile
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libpcap | < libpcap 1.1.1-4 (bookworm) | libpcap 1.1.1-4 (bookworm) |
| tcpdump | libpcap | >= 0 < 1.1.1-4 | 1.1.1-4 |
| tcpdump | libpcap | >= 0 < 1.1.1-4 | 1.1.1-4 |
| tcpdump | libpcap | >= 0 < 1.1.1-4 | 1.1.1-4 |
| tcpdump | libpcap | >= 0 < 1.1.1-4 | 1.1.1-4 |
| tcpdump | libpcap | >= 1.1.1 < 1.2.1 | 1.2.1 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9x67-6959-6grf: pcap-linux
ghsa_unreviewed·2022-05-13
CVE-2011-1935 [CRITICAL] GHSA-9x67-6959-6grf: pcap-linux
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
OSV
CVE-2011-1935: pcap-linux
osv·2017-10-20·CVSS 9.8
CVE-2011-1935 [CRITICAL] CVE-2011-1935: pcap-linux
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
Debian
CVE-2011-1935: libpcap - pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c4...
vendor_debian·2011·CVSS 9.8
CVE-2011-1935 [CRITICAL] CVE-2011-1935: libpcap - pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c4...
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
Scope: local
bookworm: resolved (fixed in 1.1.1-4)
bullseye: resolved (fixed in 1.1.1-4)
forky: resolved (fixed in 1.1.1-4)
sid: resolved (fixed in 1.1.1-4)
trixie: resolved (fixed in 1.1.1-4)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://article.gmane.org/gmane.network.tcpdump.devel/4968http://thread.gmane.org/gmane.network.tcpdump.devel/5018http://www.openwall.com/lists/oss-security/2011/05/19/11http://www.openwall.com/lists/oss-security/2014/02/08/5https://bugs.debian.org/cgi-bin/bugreport.cgi?att=1%3Bbug=623868%3Bfilename=0001-Fix-the-calculation-of-the-frame-size-in-memory-mapp.patch%3Bmsg=10https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=623868https://security-tracker.debian.org/tracker/CVE-2011-1935/http://article.gmane.org/gmane.network.tcpdump.devel/4968http://thread.gmane.org/gmane.network.tcpdump.devel/5018http://www.openwall.com/lists/oss-security/2011/05/19/11http://www.openwall.com/lists/oss-security/2014/02/08/5https://bugs.debian.org/cgi-bin/bugreport.cgi?att=1%3Bbug=623868%3Bfilename=0001-Fix-the-calculation-of-the-frame-size-in-memory-mapp.patch%3Bmsg=10https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=623868https://security-tracker.debian.org/tracker/CVE-2011-1935/
2017-10-20
Published