CVE-2020-8037
published 2020-11-04CVE-2020-8037: The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
PriorityP337high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
3.07%
86.2th percentile
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | < 10.14.6 | 10.14.6 |
| apple | mac_os_x | — | — |
| apple | mac_os_x | — | — |
| apple | mac_os_x | >= 10.15 < 10.15.7 | 10.15.7 |
| apple | macos | >= 11.0 < 11.3 | 11.3 |
| apple | macos_big_sur | — | — |
| apple | security_update_2021-002_catalina | — | — |
| debian | debian_linux | — | — |
| debian | tcpdump | < tcpdump 4.9.3-7 (bookworm) | tcpdump 4.9.3-7 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| msrc | cbl2_tcpdump_4.9.3-3_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_tcpdump_4.9.3-3_on_cbl_mariner_1.0 | — | — |
| tcpdump | tcpdump | — | — |
| tcpdump | tcpdump | >= 0 < 4.9.3-7 | 4.9.3-7 |
| tcpdump | tcpdump | >= 0 < 4.9.3-7 | 4.9.3-7 |
| tcpdump | tcpdump | >= 0 < 4.9.3-7 | 4.9.3-7 |
| tcpdump | tcpdump | >= 0 < 4.9.3-7 | 4.9.3-7 |
| tcpdump | tcpdump | >= 0 < 4.9.3-0ubuntu0.18.04.2 | 4.9.3-0ubuntu0.18.04.2 |
| tcpdump | tcpdump | >= 0 < 4.9.3-4ubuntu0.1 | 4.9.3-4ubuntu0.1 |
| tcpdump | tcpdump | >= 0 < 4.9.3-0ubuntu0.16.04.1+esm1 | 4.9.3-0ubuntu0.16.04.1+esm1 |
| the_tcpdump_group | tcpdump | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian7.5LOW
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qggh-75q9-j3rf: The ppp decapsulator in tcpdump 4
ghsa_unreviewed·2022-05-24
CVE-2020-8037 [HIGH] CWE-770 GHSA-qggh-75q9-j3rf: The ppp decapsulator in tcpdump 4
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
OSV
tcpdump vulnerabilities
osv·2022-04-11·CVSS 7.8
CVE-2018-16301 [HIGH] tcpdump vulnerabilities
tcpdump vulnerabilities
USN-5331-1 fixed several vulnerabilities in tcpdump. This update provides
the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
Original advisory details:
It was discovered that tcpdump incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2018-16301)
It was discovered that tcpdump incorrectly handled certain captured data.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2020-8037)
OSV
tcpdump vulnerabilities
osv·2022-03-16·CVSS 7.8
CVE-2018-16301 [HIGH] tcpdump vulnerabilities
tcpdump vulnerabilities
It was discovered that tcpdump incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2018-16301)
It was discovered that tcpdump incorrectly handled certain captured data.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2020-8037)
OSV
CVE-2020-8037: The ppp decapsulator in tcpdump 4
osv·2020-11-04·CVSS 7.5
CVE-2020-8037 [HIGH] CVE-2020-8037: The ppp decapsulator in tcpdump 4
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
Ubuntu
tcpdump vulnerabilities
vendor_ubuntu·2022-04-11·CVSS 7.8
CVE-2018-16301 [HIGH] tcpdump vulnerabilities
Title: tcpdump vulnerabilities
Summary: Several security issues were fixed in tcpdump.
USN-5331-1 fixed several vulnerabilities in tcpdump. This update provides
the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
Original advisory details:
It was discovered that tcpdump incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2018-16301)
It was discovered that tcpdump incorrectly handled certain captured data.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2020-8037)
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
tcpdump vulnerabilities
vendor_ubuntu·2022-03-16·CVSS 7.8
CVE-2018-16301 [HIGH] tcpdump vulnerabilities
Title: tcpdump vulnerabilities
Summary: Several security issues were fixed in tcpdump.
It was discovered that tcpdump incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2018-16301)
It was discovered that tcpdump incorrectly handled certain captured data.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2020-8037)
Instructions: In general, a standard system update will make all the necessary changes.
Apple
CVE-2020-8037: macOS Big Sur 11.3
vendor_apple·2021-04-26·CVSS 7.5
CVE-2020-8037 [HIGH] CVE-2020-8037: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2020-8037
Component: TCC
Impact: A malicious unsandboxed app on a system with Remote Login enabled may bypass Privacy preferences
Description: This issue was addressed by adding a new Remote Login option for opting into Full Disk Access for Secure Shell sessions.
Apple
CVE-2020-8037: Security Update 2021-002 Catalina
vendor_apple·2021-04-26·CVSS 7.5
CVE-2020-8037 [HIGH] CVE-2020-8037: Security Update 2021-002 Catalina
Apple Security Update: About the security content of Security Update 2021-002 Catalina
Product: Security Update 2021-002 Catalina
CVE: CVE-2020-8037
Component: Tailspin
Impact: A local attacker may be able to elevate their privileges
Description: A logic issue was addressed with improved state management.
Microsoft
ppp decapsulator can be convinced to allocate a large amount of memory
vendor_msrc·2020-11-10·CVSS 7.5
CVE-2020-8037 [HIGH] CWE-770 ppp decapsulator can be convinced to allocate a large amount of memory
ppp decapsulator can be convinced to allocate a large amount of memory
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
Tcpdump: Tcpdump
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Refer
Red Hat
tcpdump: ppp decapsulator can be convinced to allocate a large amount of memory
vendor_redhat·2020-04-20·CVSS 7.5
CVE-2020-8037 [HIGH] CWE-400 tcpdump: ppp decapsulator can be convinced to allocate a large amount of memory
tcpdump: ppp decapsulator can be convinced to allocate a large amount of memory
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
A flaw was found in tcpdump while printing PPP packets captured in a pcap file or coming from the network. This flaw allows a remote attacker to send specially crafted packets that, when printed, can lead the application to allocate a large amount of memory, resulting in a denial of service. The highest threat from this vulnerability is to system availability.
Package: tcpdump (Red Hat Enterprise Linux 5) - Out of support scope
Package: tcpdump (Red Hat Enterprise Linux 6) - Out of support scope
Package: tcpdump (Red Hat Enterprise Linux 7) - Out of support scope
Debian
CVE-2020-8037: tcpdump - The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amoun...
vendor_debian·2020·CVSS 7.5
CVE-2020-8037 [HIGH] CVE-2020-8037: tcpdump - The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amoun...
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
Scope: local
bookworm: resolved (fixed in 4.9.3-7)
bullseye: resolved (fixed in 4.9.3-7)
forky: resolved (fixed in 4.9.3-7)
sid: resolved (fixed in 4.9.3-7)
trixie: resolved (fixed in 4.9.3-7)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2021/Apr/51https://github.com/the-tcpdump-group/tcpdump/commit/32027e199368dad9508965aae8cd8de5b6ab5231https://lists.debian.org/debian-lts-announce/2020/11/msg00018.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F2MX34MJIUJQGL6CMEPLTKFOOOC3CJ4Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LWDBONZVLC6BAOR2KM376DJCM4H3FERV/https://support.apple.com/kb/HT212325https://support.apple.com/kb/HT212326https://support.apple.com/kb/HT212327http://seclists.org/fulldisclosure/2021/Apr/51https://github.com/the-tcpdump-group/tcpdump/commit/32027e199368dad9508965aae8cd8de5b6ab5231https://lists.debian.org/debian-lts-announce/2020/11/msg00018.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F2MX34MJIUJQGL6CMEPLTKFOOOC3CJ4Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LWDBONZVLC6BAOR2KM376DJCM4H3FERV/https://support.apple.com/kb/HT212325https://support.apple.com/kb/HT212326https://support.apple.com/kb/HT212327
2020-11-04
Published