Lucene search

K
osvGoogleOSV:CVE-2018-16301
HistoryOct 03, 2019 - 4:15 p.m.

CVE-2018-16301

2019-10-0316:15:12
Google
osv.dev
10

AI Score

6.9

Confidence

Low

EPSS

0.001

Percentile

41.2%

The command-line argument parser in tcpdump before 4.99.0 has a buffer overflow in tcpdump.c:read_infile(). To trigger this vulnerability the attacker needs to create a 4GB file on the local filesystem and to specify the file name as the value of the -F command-line argument of tcpdump.