Debian Tcpdump vulnerabilities
191 known vulnerabilities affecting debian/tcpdump.
Total CVEs
191
CISA KEV
0
Public exploits
10
Exploited in wild
0
Severity breakdown
CRITICAL132HIGH30MEDIUM17LOW12
Vulnerabilities
Page 7 of 10
CVE-2017-13013CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13013 [CRITICAL] CVE-2017-13013: tcpdump - The ARP parser in tcpdump before 4.9.2 has a buffer over-read in print-arp.c, se...
The ARP parser in tcpdump before 4.9.2 has a buffer over-read in print-arp.c, several functions.
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-5342CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5342 [CRITICAL] CVE-2017-5342: tcpdump - In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, O...
In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in print-ether.c:ether_print().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2017-13020CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13020 [CRITICAL] CVE-2017-13020: tcpdump - The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp...
The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13030CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13030 [CRITICAL] CVE-2017-13030: tcpdump - The PIM parser in tcpdump before 4.9.2 has a buffer over-read in print-pim.c, se...
The PIM parser in tcpdump before 4.9.2 has a buffer over-read in print-pim.c, several functions.
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13026CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13026 [CRITICAL] CVE-2017-13026: tcpdump - The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-iso...
The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c, several functions.
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13051CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13051 [CRITICAL] CVE-2017-13051: tcpdump - The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:r...
The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13010CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13010 [CRITICAL] CVE-2017-13010: tcpdump - The BEEP parser in tcpdump before 4.9.2 has a buffer over-read in print-beep.c:l...
The BEEP parser in tcpdump before 4.9.2 has a buffer over-read in print-beep.c:l_strnstart().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13006CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13006 [CRITICAL] CVE-2017-13006: tcpdump - The L2TP parser in tcpdump before 4.9.2 has a buffer over-read in print-l2tp.c, ...
The L2TP parser in tcpdump before 4.9.2 has a buffer over-read in print-l2tp.c, several functions.
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-5482CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2017
CVE-2017-5482 [CRITICAL] CVE-2017-5482: tcpdump - The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q93...
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575.
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2017-13017CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13017 [CRITICAL] CVE-2017-13017: tcpdump - The DHCPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-dhcp6....
The DHCPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-dhcp6.c:dhcp6opt_print().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-13018CRITICALCVSS 9.8fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-13018 [CRITICAL] CVE-2017-13018: tcpdump - The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm...
The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-12989HIGHCVSS 7.5fixed in tcpdump 4.9.2-1 (bookworm)2017
CVE-2017-12989 [HIGH] CVE-2017-12989: tcpdump - The RESP parser in tcpdump before 4.9.2 could enter an infinite loop due to a bu...
The RESP parser in tcpdump before 4.9.2 could enter an infinite loop due to a bug in print-resp.c:resp_get_length().
Scope: local
bookworm: resolved (fixed in 4.9.2-1)
bullseye: resolved (fixed in 4.9.2-1)
forky: resolved (fixed in 4.9.2-1)
sid: resolved (fixed in 4.9.2-1)
trixie: resolved (fixed in 4.9.2-1)
debian
CVE-2017-11108HIGHCVSS 7.5fixed in tcpdump 4.9.1-1 (bookworm)2017
CVE-2017-11108 [HIGH] CVE-2017-11108: tcpdump - tcpdump 4.9.0 allows remote attackers to cause a denial of service (heap-based b...
tcpdump 4.9.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packet data. The crash occurs in the EXTRACT_16BITS function, called from the stp_print function for the Spanning Tree Protocol.
Scope: local
bookworm: resolved (fixed in 4.9.1-1)
bullseye: resolved (fixed in 4.9.1-1)
forky: resolved (fi
debian
CVE-2017-16808LOWCVSS 5.5fixed in tcpdump 4.9.3~git20190901-1 (bookworm)2017
CVE-2017-16808 [MEDIUM] CVE-2017-16808: tcpdump - tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in p...
tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c.
Scope: local
bookworm: resolved (fixed in 4.9.3~git20190901-1)
bullseye: resolved (fixed in 4.9.3~git20190901-1)
forky: resolved (fixed in 4.9.3~git20190901-1)
sid: resolved (fixed in 4.9.3~git20190901-1)
trixie: resolved (fixed in 4.9.3~git2
debian
CVE-2016-7932CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7932 [CRITICAL] CVE-2016-7932: tcpdump - The PIM parser in tcpdump before 4.9.0 has a buffer overflow in print-pim.c:pimv...
The PIM parser in tcpdump before 4.9.0 has a buffer overflow in print-pim.c:pimv2_check_checksum().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7937CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7937 [CRITICAL] CVE-2016-7937: tcpdump - The VAT parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:vat_...
The VAT parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:vat_print().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7922CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7922 [CRITICAL] CVE-2016-7922: tcpdump - The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_pri...
The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7986CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7986 [CRITICAL] CVE-2016-7986: tcpdump - The GeoNetworking parser in tcpdump before 4.9.0 has a buffer overflow in print-...
The GeoNetworking parser in tcpdump before 4.9.0 has a buffer overflow in print-geonet.c, multiple functions.
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7930CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7930 [CRITICAL] CVE-2016-7930: tcpdump - The LLC/SNAP parser in tcpdump before 4.9.0 has a buffer overflow in print-llc.c...
The LLC/SNAP parser in tcpdump before 4.9.0 has a buffer overflow in print-llc.c:llc_print().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian
CVE-2016-7925CRITICALCVSS 9.8fixed in tcpdump 4.9.0-1 (bookworm)2016
CVE-2016-7925 [CRITICAL] CVE-2016-7925: tcpdump - The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in prin...
The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().
Scope: local
bookworm: resolved (fixed in 4.9.0-1)
bullseye: resolved (fixed in 4.9.0-1)
forky: resolved (fixed in 4.9.0-1)
sid: resolved (fixed in 4.9.0-1)
trixie: resolved (fixed in 4.9.0-1)
debian