CVE-2017-11541 PUBLISHED

tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c.

EPSS 1.05% · 77.4th percentile

Risk Scores

EPSS Score
1.05%
77.4th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTStcpdump0, 4.7.4-1ubuntu1, 4.9.0-1ubuntu1~ubuntu16.04.1
Ubuntu:14.04:LTStcpdump4.5.1-2ubuntu1.1, 0, 4.9.0-1ubuntu1~ubuntu14.04.1

Timeline

References

Open in Interactive Console →