Description
Off-by-one buffer overflow in the parse_elements function in the 802.11 printer code (print-802_11.c) for tcpdump 3.9.5 and earlier allows remote attackers to cause a denial of service (crash) via a crafted 802.11 frame. NOTE: this was originally referred to as heap-based, but it might be stack-based.
Published: 2007-03-02
Score: 6.8 Medium
EPSS: 20.3% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-1272-1 New tcpdump packages fix denial of service
Ubuntu USN Ubuntu USN USN-429-1 tcpdump vulnerability
References
Link Providers
http://cvs.tcpdump.org/cgi-bin/cvsweb/tcpdump/print-802_11.c cve-icon cve-icon
http://cvs.tcpdump.org/cgi-bin/cvsweb/tcpdump/print-802_11.c?r1=1.31.2.11&r2=1.31.2.12 cve-icon cve-icon
http://docs.info.apple.com/article.html?artnum=307179 cve-icon cve-icon
http://fedoranews.org/cms/node/2798 cve-icon cve-icon
http://fedoranews.org/cms/node/2799 cve-icon cve-icon
http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html cve-icon cve-icon
http://seclists.org/fulldisclosure/2007/Mar/0003.html cve-icon cve-icon
http://secunia.com/advisories/24318 cve-icon cve-icon
http://secunia.com/advisories/24354 cve-icon cve-icon
http://secunia.com/advisories/24423 cve-icon cve-icon
http://secunia.com/advisories/24451 cve-icon cve-icon
http://secunia.com/advisories/24583 cve-icon cve-icon
http://secunia.com/advisories/24610 cve-icon cve-icon
http://secunia.com/advisories/27580 cve-icon cve-icon
http://secunia.com/advisories/28136 cve-icon cve-icon
http://www.debian.org/security/2007/dsa-1272 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2007:056 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDKSA-2007:155 cve-icon cve-icon
http://www.osvdb.org/32427 cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2007-0368.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2007-0387.html cve-icon cve-icon
http://www.securityfocus.com/bid/22772 cve-icon cve-icon
http://www.securitytracker.com/id?1017717 cve-icon cve-icon
http://www.turbolinux.com/security/2007/TLSA-2007-46.txt cve-icon cve-icon
http://www.ubuntu.com/usn/usn-429-1 cve-icon cve-icon
http://www.us-cert.gov/cas/techalerts/TA07-352A.html cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/0793 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/4238 cve-icon cve-icon
https://bugs.gentoo.org/show_bug.cgi?id=168916 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/32749 cve-icon cve-icon
https://issues.rpath.com/browse/RPL-1100 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2007-1218 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9520 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2007-1218 cve-icon
History

No history.

Subscriptions

Redhat Enterprise Linux
Tcpdump Tcpdump
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T12:50:35.238Z

Reserved: 2007-03-02T00:00:00.000Z

Link: CVE-2007-1218

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-03-02T21:18:00.000

Modified: 2026-04-23T00:35:47.467

Link: CVE-2007-1218

cve-icon Redhat

Severity : Low

Publid Date: 2007-03-01T00:00:00Z

Links: CVE-2007-1218 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses