CVE-2018-14880
published 2019-10-03CVE-2018-14880: The OSPFv3 parser in tcpdump before 4.9.3 has a buffer over-read in print-ospf6.c:ospf6_print_lshdr().
high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
The OSPFv3 parser in tcpdump before 4.9.3 has a buffer over-read in print-ospf6.c:ospf6_print_lshdr().
Affected
89 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | < 10.15.2 | 10.15.2 |
| apple | macos_catalina_10.15.2_security_update_2019-002_mojave_security_update_2019-007 | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | tcpdump | < tcpdump 4.9.3-1 (bookworm) | tcpdump 4.9.3-1 (bookworm) |
| f5 | big-ip_access_policy_manager | 11.5.2 – 11.6.5 | — |
| f5 | big-ip_access_policy_manager | 12.1.0 – 12.1.5 | — |
| f5 | big-ip_access_policy_manager | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_access_policy_manager | 14.0.0 – 14.1.2 | — |
| f5 | big-ip_access_policy_manager | 15.0.0 – 15.0.1 | — |
| f5 | big-ip_advanced_firewall_manager | 11.5.2 – 11.6.5 | — |
| f5 | big-ip_advanced_firewall_manager | 12.1.0 – 12.1.5 | — |
| f5 | big-ip_advanced_firewall_manager | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_advanced_firewall_manager | 14.0.0 – 14.1.2 | — |
| f5 | big-ip_advanced_firewall_manager | 15.0.0 – 15.0.1 | — |
| f5 | big-ip_analytics | 11.5.2 – 11.6.5 | — |
| f5 | big-ip_analytics | 12.1.0 – 12.1.5 | — |
| f5 | big-ip_analytics | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_analytics | 14.0.0 – 14.1.2 | — |
| f5 | big-ip_analytics | 15.0.0 – 15.0.1 | — |
| f5 | big-ip_application_acceleration_manager | 11.5.2 – 11.6.5 | — |
| f5 | big-ip_application_acceleration_manager | 12.1.0 – 12.1.5 | — |
| f5 | big-ip_application_acceleration_manager | 13.1.0 – 13.1.3 | — |
| f5 | big-ip_application_acceleration_manager | 14.0.0 – 14.1.2 | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH