Lucene search

K
hackeroneDotsecurityH1:831353
HistoryMar 25, 2020 - 3:43 p.m.

Internet Bug Bounty: tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c

2020-03-2515:43:57
dotsecurity
hackerone.com
$500
16

0.002 Low

EPSS

Percentile

54.8%

There seems to be a heap-based buffer overread while running tcpdump on a crafted pcap file. A similar behavior is seen when tcpdump is listening on an interface and the contents of this file is relayed over the network.

Please find the detailed report on github
https://github.com/the-tcpdump-group/tcpdump/issues/645

CVE: https://nvd.nist.gov/vuln/detail/CVE-2017-16808

Impact

Heap Over Read