CVE-2019-15164
published 2019-10-03CVE-2019-15164: rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
PriorityP427medium5.3CVSS 3.1
AVNACLPRNUINSUCNILAN
EPSS
2.87%
85.2th percentile
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_13.3_and_ipados | — | — |
| apple | tvos | — | — |
| apple | watchos | — | — |
| debian | libpcap | < libpcap 1.9.1-1 (bookworm) | libpcap 1.9.1-1 (bookworm) |
| tcpdump | libpcap | < 1.9.1 | 1.9.1 |
| tcpdump | libpcap | >= 0 < 1.9.1-1 | 1.9.1-1 |
| tcpdump | libpcap | >= 0 < 1.9.1-1 | 1.9.1-1 |
| tcpdump | libpcap | >= 0 < 1.9.1-1 | 1.9.1-1 |
| tcpdump | libpcap | >= 0 < 1.9.1-1 | 1.9.1-1 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.3MEDIUM
vendor_debian5.3LOW
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2019-15164: watchOS 6.1.1
vendor_apple·2019-12-10·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164: watchOS 6.1.1
Apple Security Update: About the security content of watchOS 6.1.1
Product: watchOS
Version: 6.1.1
CVE: CVE-2019-15164
Component: CVE-2019-15164
Apple
CVE-2019-15164: iOS 13.3 and iPadOS 13.3
vendor_apple·2019-12-10·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164: iOS 13.3 and iPadOS 13.3
Apple Security Update: About the security content of iOS 13.3 and iPadOS 13.3
Product: iOS 13.3 and iPadOS
Version: 13.3
CVE: CVE-2019-15164
Component: CVE-2019-15164
Apple
CVE-2019-15164: tvOS 13.3
vendor_apple·2019-12-10·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164: tvOS 13.3
Apple Security Update: About the security content of tvOS 13.3
Product: tvOS
Version: 13.3
CVE: CVE-2019-15164
Component: CVE-2019-15164
Red Hat
libpcap: Server side request forgery in rpcapd/daemon.c
vendor_redhat·2019-09-20·CVSS 5.3
CVE-2019-15164 [MEDIUM] CWE-352 libpcap: Server side request forgery in rpcapd/daemon.c
libpcap: Server side request forgery in rpcapd/daemon.c
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
Statement: This issue did not affect the versions of libpcap as shipped with Red Hat Enterprise Linux 6, 7, and 8 as they did not include support for RPCAPD.
Package: libpcap (Red Hat Enterprise Linux 6) - Not affected
Package: libpcap (Red Hat Enterprise Linux 7) - Not affected
Package: libpcap (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2019-15164: libpcap - rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provide...
vendor_debian·2019·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164: libpcap - rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provide...
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
Scope: local
bookworm: resolved (fixed in 1.9.1-1)
bullseye: resolved (fixed in 1.9.1-1)
forky: resolved (fixed in 1.9.1-1)
sid: resolved (fixed in 1.9.1-1)
trixie: resolved (fixed in 1.9.1-1)
GHSA
GHSA-p4mj-gpq6-mv6x: rpcapd/daemon
ghsa_unreviewed·2022-05-24
CVE-2019-15164 [MEDIUM] CWE-918 GHSA-p4mj-gpq6-mv6x: rpcapd/daemon
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
OSV
CVE-2019-15164: rpcapd/daemon
osv·2019-10-03·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164: rpcapd/daemon
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-16301 CVE-2019-15161 CVE-2019-15162 CVE-2019-15163 CVE-2019-15164 CVE-2019-15165 libpcap: various flaws [fedora-all]
bugzilla·2019-10-10·CVSS 7.8
CVE-2018-16301 [HIGH] CVE-2018-16301 CVE-2019-15161 CVE-2019-15162 CVE-2019-15163 CVE-2019-15164 CVE-2019-15165 libpcap: various flaws [fedora-all]
CVE-2018-16301 CVE-2019-15161 CVE-2019-15162 CVE-2019-15163 CVE-2019-15164 CVE-2019-15165 libpcap: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE
Bugzilla
CVE-2019-15164 libpcap: Server side request forgery in rpcapd/daemon.c
bugzilla·2019-10-10·CVSS 5.3
CVE-2019-15164 [MEDIUM] CVE-2019-15164 libpcap: Server side request forgery in rpcapd/daemon.c
CVE-2019-15164 libpcap: Server side request forgery in rpcapd/daemon.c
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
Upstream patch:
https://github.com/the-tcpdump-group/libpcap/commit/33834cb2a4d035b52aa2a26742f832a112e90a0a
References:
https://github.com/the-tcpdump-group/libpcap/blob/libpcap-1.9/CHANGES
Discussion:
Created libpcap tracking bugs for this issue:
Affects: fedora-all [bug 1760624]
---
RPCAPD support added in tcpdump 1.9.0 (see https://github.com/the-tcpdump-group/libpcap/blob/libpcap-1.9/CHANGES#L74).
---
RHEL 6 and 7 ship an older version of libpcap that does not even have the vulnerable file.
RHEL 8 ships a newer version, however it is not compiled with RPCAPD support (--enable-remote is not specified).
arXiv
Benchmarking LLMs and LLM-based Agents in Practical Vulnerability Detection for Code Repositories
arxiv_fulltext·2025-03-18
Benchmarking LLMs and LLM-based Agents in Practical Vulnerability Detection for Code Repositories
## Abstract
Large Language Models (LLMs) have shown promise in software vulnerability detection, particularly on function-level benchmarks like Devign and BigVul. However, real-world detection requires interprocedural analysis, as vulnerabilities often emerge through multi-hop function calls rather than isolated functions. While repository-level benchmarks like ReposVul and VulEval introduce interprocedural context, they remain computationally expensive, lack pairwise evaluation of vulnerability fixes, and explore limited context retrieval, limiting their practicality.
We introduce , a JIT vulnerability detection benchmark linking each function to its vulnerability-introducing and fixing commits. Built from 879 CVEs spanning 91 vulnerability types, enables comprehensive evaluation of det
http://seclists.org/fulldisclosure/2019/Dec/26https://github.com/the-tcpdump-group/libpcap/blob/libpcap-1.9/CHANGEShttps://github.com/the-tcpdump-group/libpcap/commit/33834cb2a4d035b52aa2a26742f832a112e90a0ahttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5P5K3DQ4TFSZBDB3XN4CZNJNQ3UIF3D3/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GBIEKWLNIR62KZ5GA7EDXZS52HU6OE5F/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UZTIPUWABYUE5KQOLCKAW65AUUSB7QO6/https://seclists.org/bugtraq/2019/Dec/23https://support.apple.com/kb/HT210785https://support.apple.com/kb/HT210788https://support.apple.com/kb/HT210789https://support.apple.com/kb/HT210790https://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://www.tcpdump.org/public-cve-list.txthttp://seclists.org/fulldisclosure/2019/Dec/26https://github.com/the-tcpdump-group/libpcap/blob/libpcap-1.9/CHANGEShttps://github.com/the-tcpdump-group/libpcap/commit/33834cb2a4d035b52aa2a26742f832a112e90a0ahttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5P5K3DQ4TFSZBDB3XN4CZNJNQ3UIF3D3/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GBIEKWLNIR62KZ5GA7EDXZS52HU6OE5F/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UZTIPUWABYUE5KQOLCKAW65AUUSB7QO6/https://seclists.org/bugtraq/2019/Dec/23https://support.apple.com/kb/HT210785https://support.apple.com/kb/HT210788https://support.apple.com/kb/HT210789https://support.apple.com/kb/HT210790https://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://www.tcpdump.org/public-cve-list.txt
2019-10-03
Published