Lucene search

K
cve[email protected]CVE-2007-3798
HistoryJul 16, 2007 - 10:30 p.m.

CVE-2007-3798

2007-07-1622:30:00
CWE-252
web.nvd.nist.gov
34
cve-2007-3798
integer overflow
print-bgp.c
bgp dissector
tcpdump
nvd
security vulnerability
remote code execution
tlvs

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.8 High

AI Score

Confidence

High

0.687 Medium

EPSS

Percentile

98.0%

Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value.

Affected configurations

NVD
Node
tcpdumptcpdumpRange3.9.6
Node
canonicalubuntu_linuxMatch6.06
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04
Node
debiandebian_linuxMatch3.1
OR
debiandebian_linuxMatch4.0
Node
slackwareslackwareMatch9.0
OR
slackwareslackwareMatch9.1
OR
slackwareslackwareMatch10.0
OR
slackwareslackwareMatch10.1
OR
slackwareslackwareMatch10.2
OR
slackwareslackwareMatch11.0
OR
slackwareslackwareMatch12.0
Node
freebsdfreebsdRange5.05.5
OR
freebsdfreebsdRange6.06.1
OR
freebsdfreebsdMatch5.5-
OR
freebsdfreebsdMatch5.5p1
OR
freebsdfreebsdMatch5.5p11
OR
freebsdfreebsdMatch5.5p12
OR
freebsdfreebsdMatch5.5p13
OR
freebsdfreebsdMatch5.5p14
OR
freebsdfreebsdMatch5.5p2
OR
freebsdfreebsdMatch5.5p3
OR
freebsdfreebsdMatch5.5p4
OR
freebsdfreebsdMatch5.5p5
OR
freebsdfreebsdMatch5.5p7
OR
freebsdfreebsdMatch5.5p8
OR
freebsdfreebsdMatch5.5p9
OR
freebsdfreebsdMatch6.1-
OR
freebsdfreebsdMatch6.1p1
OR
freebsdfreebsdMatch6.1p10
OR
freebsdfreebsdMatch6.1p11
OR
freebsdfreebsdMatch6.1p12
OR
freebsdfreebsdMatch6.1p13
OR
freebsdfreebsdMatch6.1p16
OR
freebsdfreebsdMatch6.1p17
OR
freebsdfreebsdMatch6.1p18
OR
freebsdfreebsdMatch6.1p2
OR
freebsdfreebsdMatch6.1p4
OR
freebsdfreebsdMatch6.1p6
OR
freebsdfreebsdMatch6.1p7
OR
freebsdfreebsdMatch6.1p9
OR
freebsdfreebsdMatch6.2-
OR
freebsdfreebsdMatch6.2p1
OR
freebsdfreebsdMatch6.2p4
OR
freebsdfreebsdMatch6.2p5
OR
freebsdfreebsdMatch6.2p6
Node
applemac_os_xRange10.0.010.4.11
OR
applemac_os_x_serverRange10.0.010.4.11
CPENameOperatorVersion
tcpdump:tcpdumptcpdumple3.9.6

References

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.8 High

AI Score

Confidence

High

0.687 Medium

EPSS

Percentile

98.0%