CVE-2018-14467 PUBLISHED

The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_MP).

EPSS 0.46% · 63.7th percentile

Risk Scores

EPSS Score
0.46%
63.7th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTStcpdump0, 4.9.2-3, 4.9.2-2ubuntu1
Ubuntu:16.04:LTStcpdump4.7.4-1ubuntu1, 0, 4.9.0-1ubuntu1~ubuntu16.04.1
Ubuntu:Pro:14.04:LTStcpdump4.4.0-1ubuntu1, 4.9.2-0ubuntu0.14.04.1, 4.9.0-1ubuntu1~ubuntu14.04.1

Timeline

References

Open in Interactive Console →