Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4478-1 | tcpflow security update |
Wed, 25 Feb 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Debian
Debian debian Linux Digitalcorpora Digitalcorpora tcpflow |
|
| CPEs | cpe:2.3:a:digitalcorpora:tcpflow:*:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Debian
Debian debian Linux Digitalcorpora Digitalcorpora tcpflow |
|
| Metrics |
cvssV3_1
|
Tue, 10 Feb 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 02 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 30 Jan 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Simsong
Simsong tcpflow |
|
| Vendors & Products |
Simsong
Simsong tcpflow |
Thu, 29 Jan 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | tcpflow is a TCP/IP packet demultiplexer. In versions up to and including 1.61, wifipcap parses 802.11 management frame elements and performs a length check on the wrong field when handling the TIM element. A crafted frame with a large TIM length can cause a 1-byte out-of-bounds write past `tim.bitmap[251]`. The overflow is small and DoS is the likely impact; code execution is potential, but still up in the air. The affected structure is stack-allocated in `handle_beacon()` and related handlers. As of time of publication, no known patches are available. | |
| Title | tcpflow has TIM Element OOB Write in wifipcap | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-10T20:14:00.298Z
Reserved: 2026-01-28T14:50:47.889Z
Link: CVE-2026-25061
Updated: 2026-01-30T14:48:03.234Z
Status : Analyzed
Published: 2026-01-29T22:15:55.797
Modified: 2026-02-25T15:24:30.993
Link: CVE-2026-25061
No data.
OpenCVE Enrichment
Updated: 2026-04-18T01:30:16Z
Debian DLA