Nfdump Project Nfdump vulnerabilities
2 known vulnerabilities affecting nfdump_project/nfdump.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2019-14459P3HIGHCVSS 7.5≤ 1.6.172019-07-31
CVE-2019-14459 [HIGH] CWE-190 CVE-2019-14459: nfdump 1.6.17 and earlier is affected by an integer overflow in the function Process_ipfix_template_
nfdump 1.6.17 and earlier is affected by an integer overflow in the function Process_ipfix_template_withdraw in ipfix.c that can be abused in order to crash the process remotely (denial of service).
nvdosv
CVE-2019-1010057P3HIGHCVSS 7.8≤ 1.6.162019-07-16
CVE-2019-1010057 [HIGH] CWE-787 CVE-2019-1010057: nfdump 1.6.16 and earlier is affected by: Buffer Overflow. The impact is: The impact could range fro
nfdump 1.6.16 and earlier is affected by: Buffer Overflow. The impact is: The impact could range from a denial of service to local code execution. The component is: nfx.c:546, nffile_inline.c:83, minilzo.c (redistributed). The attack vector is: nfdump must read and process a specially crafted file. The fixed version is: after commit 9f0fe9563366f6
nvdosv