Lucene search

K
cve[email protected]CVE-2007-1218
HistoryMar 02, 2007 - 9:18 p.m.

CVE-2007-1218

2007-03-0221:18:00
CWE-119
CWE-189
web.nvd.nist.gov
36
cve-2007-1218
buffer overflow
stack-based
denial of service
802.11
tcpdump

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

9.2 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.1%

Off-by-one buffer overflow in the parse_elements function in the 802.11 printer code (print-802_11.c) for tcpdump 3.9.5 and earlier allows remote attackers to cause a denial of service (crash) via a crafted 802.11 frame. NOTE: this was originally referred to as heap-based, but it might be stack-based.

Affected configurations

NVD
Node
tcpdumptcpdumpRange3.9.5
CPENameOperatorVersion
tcpdump:tcpdumptcpdumple3.9.5

References

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

9.2 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.1%