CVE-2018-16228 PUBLISHED

The HNCP parser in tcpdump before 4.9.3 has a buffer over-read in print-hncp.c:print_prefix().

EPSS 2.17% · 84.2th percentile

Risk Scores

EPSS Score
2.17%
84.2th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTStcpdump4.9.2-3, 4.9.2-2ubuntu1, 4.9.2-2build1
Ubuntu:Pro:14.04:LTStcpdump4.9.2-0ubuntu0.14.04.1, 0, 4.4.0-1ubuntu1
Ubuntu:16.04:LTStcpdump4.9.2-0ubuntu0.16.04.1, 4.9.0-1ubuntu1~ubuntu16.04.1, 4.7.4-1ubuntu1

Timeline

References

Open in Interactive Console →