CVE-2018-14466 PUBLISHED

The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rx_cache_find() and rx_cache_insert().

EPSS 2.01% · 83.6th percentile

Risk Scores

EPSS Score
2.01%
83.6th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTStcpdump0, 4.4.0-1ubuntu1, 4.5.1-2ubuntu1
Ubuntu:18.04:LTStcpdump4.9.2-3, 4.9.2-1, 4.9.2-2
Ubuntu:16.04:LTStcpdump4.7.4-1ubuntu1, 4.9.0-1ubuntu1~ubuntu16.04.1, 4.9.2-0ubuntu0.16.04.1

Timeline

References

Open in Interactive Console →