Redhat Tcpdump vulnerabilities
6 known vulnerabilities affecting redhat/tcpdump.
Total CVEs
6
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM5
Vulnerabilities
Page 1 of 1
CVE-2014-9140MEDIUMCVSS 5.0≤ 4.6.22014-12-05
CVE-2014-9140 [MEDIUM] CWE-119 CVE-2014-9140: Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and earlier allows remote a
Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and earlier allows remote attackers to cause a denial of service (crash) cia a crafted PPP packet.
nvd
CVE-2014-8767MEDIUMCVSS 5.0v3.9.6v3.9.7+15 more2014-11-20
CVE-2014-8767 [MEDIUM] CWE-189 CVE-2014-8767: Integer underflow in the olsr_print function in tcpdump 3.9.6 through 4.6.2, when in verbose mode, a
Integer underflow in the olsr_print function in tcpdump 3.9.6 through 4.6.2, when in verbose mode, allows remote attackers to cause a denial of service (crash) via a crafted length value in an OLSR frame.
nvd
CVE-2014-8768MEDIUMCVSS 5.0PoCv4.5.0v4.5.1+4 more2014-11-20
CVE-2014-8768 [MEDIUM] CWE-191 CVE-2014-8768: Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in ver
Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in verbose mode, allow remote attackers to cause a denial of service (segmentation fault and crash) via a crafted length value in a Geonet frame.
nvd
CVE-2014-8769MEDIUMCVSS 6.4v3.8.0v3.8.2+21 more2014-11-20
CVE-2014-8769 [MEDIUM] CWE-119 CVE-2014-8769: tcpdump 3.8 through 4.6.2 might allow remote attackers to obtain sensitive information from memory o
tcpdump 3.8 through 4.6.2 might allow remote attackers to obtain sensitive information from memory or cause a denial of service (packet loss or segmentation fault) via a crafted Ad hoc On-Demand Distance Vector (AODV) packet, which triggers an out-of-bounds memory access.
nvd
CVE-2003-0989HIGHCVSS 7.5≤ 3.8.02004-02-17
CVE-2003-0989 [HIGH] CVE-2003-0989: tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certai
tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.
nvd
CVE-2003-0194MEDIUMCVSS 4.6v3.4-39v3.6.2-9+3 more2003-06-09
CVE-2003-0194 [MEDIUM] CVE-2003-0194: tcpdump does not properly drop privileges to the pcap user when starting up.
tcpdump does not properly drop privileges to the pcap user when starting up.
nvd