The RESP parser in tcpdump before 4.9.2 could enter an infinite loop due to a bug in print-resp.c:resp_get_length().
http://www.debian.org/security/2017/dsa-3971
http://www.securitytracker.com/id/1039307
http://www.tcpdump.org/tcpdump-changes.txt
https://access.redhat.com/errata/RHEA-2018:0705
https://github.com/the-tcpdump-group/tcpdump/commit/db24063b01cba8e9d4d88b7d8ac70c9000c104e4
Source: MITRE
Published: 2017-09-14
Updated: 2019-10-03
Type: CWE-835
Base Score: 5
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P
Impact Score: 2.9
Exploitability Score: 10
Severity: MEDIUM
Base Score: 7.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Impact Score: 3.6
Exploitability Score: 3.9
Severity: HIGH
OR
cpe:2.3:a:tcpdump:tcpdump:*:*:*:*:*:*:*:* versions up to 4.9.1 (inclusive)
ID | Name | Product | Family | Severity |
---|---|---|---|---|
127275 | NewStart CGSL CORE 5.04 / MAIN 5.04 : tcpdump Multiple Vulnerabilities (NS-SA-2019-0071) | Nessus | NewStart CGSL Local Security Checks | high |
700512 | macOS 10.13.x < 10.13.1 Multiple Vulnerabilities | Nessus Network Monitor | Operating System Detection | critical |
121732 | Photon OS 1.0: Tcpdump PHSA-2017-0034 | Nessus | PhotonOS Local Security Checks | high |
111883 | Photon OS 1.0: Ruby / Tcpdump PHSA-2017-0034 (deprecated) | Nessus | PhotonOS Local Security Checks | high |
104379 | macOS and Mac OS X Multiple Vulnerabilities (Security Update 2017-001 and 2017-004) | Nessus | MacOS X Local Security Checks | critical |
104378 | macOS 10.13.x < 10.13.1 Multiple Vulnerabilities | Nessus | MacOS X Local Security Checks | high |
104334 | EulerOS 2.0 SP2 : tcpdump (EulerOS-SA-2017-1281) | Nessus | Huawei Local Security Checks | high |
104333 | EulerOS 2.0 SP1 : tcpdump (EulerOS-SA-2017-1280) | Nessus | Huawei Local Security Checks | high |
104239 | openSUSE Security Update : tcpdump (openSUSE-2017-1205) | Nessus | SuSE Local Security Checks | high |
104208 | SUSE SLED12 / SLES12 Security Update : tcpdump (SUSE-SU-2017:2854-1) | Nessus | SuSE Local Security Checks | high |
103484 | FreeBSD : tcpdump -- multiple vulnerabilities (eb03d642-6724-472d-b038-f2bf074e1fc8) | Nessus | FreeBSD Local Security Checks | high |
103462 | GLSA-201709-23 : Tcpdump: Multiple vulnerabilities | Nessus | Gentoo Local Security Checks | high |
103257 | Debian DLA-1097-1 : tcpdump security update | Nessus | Debian Local Security Checks | high |
103218 | Ubuntu 14.04 LTS / 16.04 LTS / 17.04 : tcpdump vulnerabilities (USN-3415-1) | Nessus | Ubuntu Local Security Checks | high |
103148 | Debian DSA-3971-1 : tcpdump - security update | Nessus | Debian Local Security Checks | high |
103091 | Slackware 13.37 / 14.0 / 14.1 / 14.2 / current : tcpdump (SSA:2017-251-03) | Nessus | Slackware Local Security Checks | high |
100472 | AIX 5.3 TL 12 : tcpdump (IV94729) | Nessus | AIX Local Security Checks | high |
100471 | AIX 6.1 TL 9 : tcpdump (IV94728) | Nessus | AIX Local Security Checks | high |
100470 | AIX 7.1 TL 3 : tcpdump (IV94727) | Nessus | AIX Local Security Checks | high |
100469 | AIX 7.1 TL 4 : tcpdump (IV94726) | Nessus | AIX Local Security Checks | high |
100468 | AIX 7.2 TL 0 : tcpdump (IV94724) | Nessus | AIX Local Security Checks | high |
100467 | AIX 7.2 TL 1 : tcpdump (IV94723) | Nessus | AIX Local Security Checks | high |