Know every vulnerabilitybefore it knows you.
DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.
DLA-1955-1
No affected components available
tcpdump - security update
Measures severity based on intrinsic characteristics of the vulnerability, independent of environment.
No exploitation activity has been observed at this time. Continue routine monitoring.
The exploit probability is very low. The vulnerability is unlikely to be exploited in the next 30 days.
We did not find any exploit available. Neither in GitHub repositories nor in the Exploit-Database.
- CVE-2018-10103
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).
UpstreamEPSS 4.1% - CVE-2018-10105
tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2).
UpstreamEPSS 3.9% - CVE-2018-14461
The LDP parser in tcpdump before 4.9.3 has a buffer over-read in print-ldp.c:ldp_tlv_print().
UpstreamEPSS 4.0% - CVE-2018-14462
The ICMP parser in tcpdump before 4.9.3 has a buffer over-read in print-icmp.c:icmp_print().
UpstreamEPSS 4.0% - CVE-2018-14463
The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 2, a different vulnerability than CVE-2019-15167.
UpstreamEPSS 4.7% - CVE-2018-14464
The LMP parser in tcpdump before 4.9.3 has a buffer over-read in print-lmp.c:lmp_print_data_link_subobjs().
UpstreamEPSS 4.0% - CVE-2018-14465
The RSVP parser in tcpdump before 4.9.3 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
UpstreamEPSS 4.1% - CVE-2018-14466
The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rx_cache_find() and rx_cache_insert().
UpstreamEPSS 4.0% - CVE-2018-14467
The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_MP).
UpstreamEPSS 4.0% - CVE-2018-14468
The FRF.16 parser in tcpdump before 4.9.3 has a buffer over-read in print-fr.c:mfr_print().
UpstreamEPSS 4.0% - CVE-2018-14469
The IKEv1 parser in tcpdump before 4.9.3 has a buffer over-read in print-isakmp.c:ikev1_n_print().
UpstreamEPSS 5.3% - CVE-2018-14470
The Babel parser in tcpdump before 4.9.3 has a buffer over-read in print-babel.c:babel_print_v2().
UpstreamEPSS 4.0% - CVE-2018-14879
The command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file().
UpstreamEPSS 4.7% - CVE-2018-14880
The OSPFv3 parser in tcpdump before 4.9.3 has a buffer over-read in print-ospf6.c:ospf6_print_lshdr().
UpstreamEPSS 5.3% - CVE-2018-14881
The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_RESTART).
UpstreamEPSS 4.8% - CVE-2018-14882
The ICMPv6 parser in tcpdump before 4.9.3 has a buffer over-read in print-icmp6.c.
UpstreamEPSS 3.9% - CVE-2018-16227
The IEEE 802.11 parser in tcpdump before 4.9.3 has a buffer over-read in print-802_11.c for the Mesh Flags subfield.
UpstreamEPSS 6.8% - CVE-2018-16228
The HNCP parser in tcpdump before 4.9.3 has a buffer over-read in print-hncp.c:print_prefix().
UpstreamEPSS 3.7% - CVE-2018-16229
The DCCP parser in tcpdump before 4.9.3 has a buffer over-read in print-dccp.c:dccp_print_option().
UpstreamEPSS 6.8% - CVE-2018-16230
The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_attr_print() (MP_REACH_NLRI).
UpstreamEPSS 3.9% - CVE-2018-16300
The BGP parser in tcpdump before 4.9.3 allows stack consumption in print-bgp.c:bgp_attr_print() because of unlimited recursion.
UpstreamEPSS 4.1% - CVE-2018-16451
The SMB parser in tcpdump before 4.9.3 has buffer over-reads in print-smb.c:print_trans() for \MAILSLOT\BROWSE and \PIPE\LANMAN.
UpstreamEPSS 4.1% - CVE-2018-16452
The SMB parser in tcpdump before 4.9.3 has stack exhaustion in smbutil.c:smb_fdata() via recursion.
UpstreamEPSS 4.1% - CVE-2019-15166
lmp_print_data_link_subobjs() in print-lmp.c in tcpdump before 4.9.3 lacks certain bounds checks.
UpstreamEPSS 5.0% - EUVD-2018-2182Upstream
- EUVD-2018-2184Upstream
- EUVD-2018-6378Upstream
- EUVD-2018-6379Upstream
- EUVD-2018-6380Upstream
- EUVD-2018-6381Upstream
- EUVD-2018-6382Upstream
- EUVD-2018-6383Upstream
- EUVD-2018-6384Upstream
- EUVD-2018-6385Upstream
- EUVD-2018-6386Upstream
- EUVD-2018-6387Upstream
- EUVD-2018-6761Upstream
- EUVD-2018-6762Upstream
- EUVD-2018-6763Upstream
- EUVD-2018-6764Upstream
- EUVD-2018-8079Upstream
- EUVD-2018-8080Upstream
- EUVD-2018-8081Upstream
- EUVD-2018-8082Upstream
- EUVD-2018-8151Upstream
- EUVD-2018-8291Upstream
- EUVD-2018-8292Upstream
- EUVD-2019-6222Upstream
Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.
Checkout DevGuard