Description
tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: "ND_PRINT((ndo, "%s", buf));", in function named "print_prefix", in "print-hncp.c". The attack vector is: The victim must open a specially crafted pcap file.
Published: 2019-07-22
Score: 3.3 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-1962 tcpdump.org tcpdump 4.9.2 is affected by: CWE-126: Buffer Over-read. The impact is: May expose Saved Frame Pointer, Return Address etc. on stack. The component is: line 234: "ND_PRINT((ndo, "%s", buf));", in function named "print_prefix", in "print-hncp.c". The attack vector is: The victim must open a specially crafted pcap file.
Ubuntu USN Ubuntu USN USN-4252-1 tcpdump vulnerabilities
Ubuntu USN Ubuntu USN USN-4252-2 tcpdump vulnerabilities
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dwf

Published:

Updated: 2024-08-05T03:07:18.432Z

Reserved: 2019-03-20T00:00:00.000Z

Link: CVE-2019-1010220

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-07-22T18:15:11.027

Modified: 2024-11-21T04:18:03.980

Link: CVE-2019-1010220

cve-icon Redhat

Severity :

Publid Date: 2019-08-01T00:00:00Z

Links: CVE-2019-1010220 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses