Back

MEDIUM

tcpdump: Stack-based buffer over-read in print-hncp.c:print_prefix() via crafted pcap

Published Nov 25, 2018

Description

In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.

Affected products

Remediation

Red Hat statement

This issue affects the versions of tcpdump as shipped with Red Hat Enterprise Linux 7. This issue did not affect the versions of tcpdump as shipped with Red Hat Enterprise Linux 5 and 6.

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 25, 2018
Updated Aug 5, 2024
Reserved Nov 25, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Dec 3, 2018