|
tcpdump Print-bgp.C Remote Integer Underflow Vulnerability
The 'tcpdump' utility is prone to an integer-underflow vulnerability because it fails to bounds-check user-supplied input before copying it into an insufficiently sized memory buffer. An attacker can exploit this issue to execute arbitrary malicious code in the context of the user running the affected application. Failed exploit attempts will likely crash the affected application. This issue affects tcpdump 3.9.6 and prior versions. |
|
|
Privacy Statement |