CVE-2018-14465 PUBLISHED

The RSVP parser in tcpdump before 4.9.3 has a buffer over-read in print-rsvp.c:rsvp_obj_print().

EPSS 1.76% · 82.5th percentile

Risk Scores

EPSS Score
1.76%
82.5th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTStcpdump0, 4.4.0-1ubuntu1, 4.5.1-2ubuntu1
Ubuntu:18.04:LTStcpdump4.9.2-3, 4.9.2-1, 4.9.2-2
Ubuntu:16.04:LTStcpdump4.7.4-1ubuntu1, 4.9.0-1ubuntu1~ubuntu16.04.1, 4.9.2-0ubuntu0.16.04.1

Timeline

References

Open in Interactive Console →