cbcvebase.

Debian Tcpdump vulnerabilities

185 known vulnerabilities affecting debian/tcpdump.

Total CVEs
185
CISA KEV
0
Public exploits
10
Exploited in wild
0
Severity breakdown
CRITICAL132HIGH30MEDIUM17LOW6

Vulnerabilities

Page 1 of 10
CVE-2007-3798P2CRITICALCVSS 9.8PoCfixed in tcpdump 3.9.5-3 (bookworm)2007
CVE-2007-3798 [CRITICAL] CVE-2007-3798: tcpdump - Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlie... Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value. Scope: local bookworm: resolved (fixed in 3.9.5-3) bullseye: resolved (fixed in 3.9.5-3) forky: resolved (fixed in 3.9.5-3) sid: resolved (fixed in 3.9.5-3) trixi
debian
CVE-2004-0184P3MEDIUMCVSS 5.0PoCfixed in tcpdump 3.7.2-4 (bookworm)2004
CVE-2004-0184 [MEDIUM] CVE-2004-0184: tcpdump - Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows re... Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite. Scope: local bookwor
debian
CVE-2015-2153P3MEDIUMCVSS 5.0PoCfixed in tcpdump 4.6.2-4 (bookworm)2015
CVE-2015-2153 [MEDIUM] CVE-2015-2153: tcpdump - The rpki_rtr_pdu_print function in print-rpki-rtr.c in the TCP printer in tcpdum... The rpki_rtr_pdu_print function in print-rpki-rtr.c in the TCP printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via a crafted header length in an RPKI-RTR Protocol Data Unit (PDU). Scope: local bookworm: resolved (fixed in 4.6.2-4) bullseye: resolved (fixed in 4.6.2-4) forky: resolved (fixed
debian
CVE-2014-8768P4MEDIUMCVSS 5.0PoCfixed in tcpdump 4.6.2-2 (bookworm)2014
CVE-2014-8768 [MEDIUM] CVE-2014-8768: tcpdump - Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 throug... Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in verbose mode, allow remote attackers to cause a denial of service (segmentation fault and crash) via a crafted length value in a Geonet frame. Scope: local bookworm: resolved (fixed in 4.6.2-2) bullseye: resolved (fixed in 4.6.2-2) forky: resolved (fixed in 4.6.2-2) sid:
debian
CVE-2005-1279P4MEDIUMCVSS 5.0PoCfixed in tcpdump 3.8.3-4 (bookworm)2005
CVE-2005-1279 [MEDIUM] CVE-2005-1279: tcpdump - tcpdump 3.8.3 and earlier allows remote attackers to cause a denial of service (... tcpdump 3.8.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted (1) BGP packet, which is not properly handled by RT_ROUTING_INFO, or (2) LDP packet, which is not properly handled by the ldp_print function. Scope: local bookworm: resolved (fixed in 3.8.3-4) bullseye: resolved (fixed in 3.8.3-4) forky: resolved (fixed in 3.
debian
CVE-2018-10103P3CRITICALCVSS 9.8fixed in tcpdump 4.9.3-1 (bookworm)2018
CVE-2018-10103 [CRITICAL] CVE-2018-10103: tcpdump - tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2). tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2). Scope: local bookworm: resolved (fixed in 4.9.3-1) bullseye: resolved (fixed in 4.9.3-1) forky: resolved (fixed in 4.9.3-1) sid: resolved (fixed in 4.9.3-1) trixie: resolved (fixed in 4.9.3-1)
debian
CVE-2018-10105P3CRITICALCVSS 9.8fixed in tcpdump 4.9.3-1 (bookworm)2018
CVE-2018-10105 [CRITICAL] CVE-2018-10105: tcpdump - tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2). tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2). Scope: local bookworm: resolved (fixed in 4.9.3-1) bullseye: resolved (fixed in 4.9.3-1) forky: resolved (fixed in 4.9.3-1) sid: resolved (fixed in 4.9.3-1) trixie: resolved (fixed in 4.9.3-1)
debian
CVE-2017-5342P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5342 [CRITICAL] CVE-2017-5342: tcpdump - In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, O... In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in print-ether.c:ether_print(). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2017-5482P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5482 [CRITICAL] CVE-2017-5482: tcpdump - The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q93... The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575. Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7974P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7974 [CRITICAL] CVE-2016-7974: tcpdump - The IP parser in tcpdump before 4.9.0 has a buffer overflow in print-ip.c, multi... The IP parser in tcpdump before 4.9.0 has a buffer overflow in print-ip.c, multiple functions. Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2005-1267P4MEDIUMCVSS 5.0PoCfixed in tcpdump 3.9.0.cvs.20050614-1 (bookworm)2005
CVE-2005-1267 [MEDIUM] CVE-2005-1267: tcpdump - The bgp_update_print function in tcpdump 3.x does not properly handle a -1 retur... The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet. Scope: local bookworm: resolved (fixed in 3.9.0.cvs.20050614-1) bullseye: resolved (fixed in 3.9.0.cvs.20050614-1) forky: resolved (fixed in 3.9.
debian
CVE-2016-7975P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7975 [CRITICAL] CVE-2016-7975: tcpdump - The TCP parser in tcpdump before 4.9.0 has a buffer overflow in print-tcp.c:tcp_... The TCP parser in tcpdump before 4.9.0 has a buffer overflow in print-tcp.c:tcp_print(). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7993P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7993 [CRITICAL] CVE-2016-7993: tcpdump - A bug in util-print.c:relts_print() in tcpdump before 4.9.0 could cause a buffer... A bug in util-print.c:relts_print() in tcpdump before 4.9.0 could cause a buffer overflow in multiple protocol parsers (DNS, DVMRP, HSRP, IGMP, lightweight resolver protocol, PIM). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4
debian
CVE-2005-1280P4MEDIUMCVSS 5.0PoCfixed in tcpdump 3.8.3-4 (bookworm)2005
CVE-2005-1280 [MEDIUM] CVE-2005-1280: tcpdump - The rsvp_print function in tcpdump 3.9.1 and earlier allows remote attackers to ... The rsvp_print function in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4. Scope: local bookworm: resolved (fixed in 3.8.3-4) bullseye: resolved (fixed in 3.8.3-4) forky: resolved (fixed in 3.8.3-4) sid: resolved (fixed in 3.8.3-4) trixie: resolved (fixed in 3.8.3-4)
debian
CVE-2017-5484P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5484 [CRITICAL] CVE-2017-5484: tcpdump - The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_... The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_print(). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2017-11543P3CRITICALCVSS 9.8fixed in tcpdump 4.9.1-3 (bookworm)2017
CVE-2017-11543 [CRITICAL] CVE-2017-11543: tcpdump - tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c... tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c. Scope: local bookworm: resolved (fixed in 4.9.1-3) bullseye: resolved (fixed in 4.9.1-3) forky: resolved (fixed in 4.9.1-3) sid: resolved (fixed in 4.9.1-3) trixie: resolved (fixed in 4.9.1-3)
debian
CVE-2017-5204P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5204 [CRITICAL] CVE-2017-5204: tcpdump - The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6... The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print(). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-8575P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-8575 [CRITICAL] CVE-2016-8575: tcpdump - The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q93... The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2017-5482. Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2005-1278P4MEDIUMCVSS 5.0PoCfixed in tcpdump 3.8.3-4 (bookworm)2005
CVE-2005-1278 [MEDIUM] CVE-2005-1278: tcpdump - The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlie... The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet. Scope: local bookworm: resolved (fixed in 3.8.3-4) bullseye: resolved (fixed in 3.8.3-4) forky: resolved (fixed in 3.8.3-4) sid: resolved (fixed in 3.8.3-4) trixi
debian
CVE-2016-7992P3CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7992 [CRITICAL] CVE-2016-7992: tcpdump - The Classical IP over ATM parser in tcpdump before 4.9.0 has a buffer overflow i... The Classical IP over ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-cip.c:cip_if_print(). Scope: local bookworm: resolved (fixed in 4.9.0-1) bullseye: resolved (fixed in 4.9.0-1) forky: resolved (fixed in 4.9.0-1) sid: resolved (fixed in 4.9.0-1) trixie: resolved (fixed in 4.9.0-1)
debian
1 / 10Next →
Debian Tcpdump vulnerabilities | cvebase