Tcpdump CVE-2017-12995 Denial of Service Vulnerability
BID:100913
Info
Tcpdump CVE-2017-12995 Denial of Service Vulnerability
| Bugtraq ID: | 100913 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2017-12995 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 11 2017 12:00AM |
| Updated: | Sep 11 2017 12:00AM |
| Credit: | Otto Airamo and Antti Levomäki. |
| Vulnerable: |
Ubuntu Ubuntu Linux 17.04 Ubuntu Ubuntu Linux 16.04 LTS Ubuntu Ubuntu Linux 14.04 LTS tcpdump tcpdump 4.9 tcpdump tcpdump 4.3 tcpdump tcpdump 4.1.1 tcpdump tcpdump 3.9.6 tcpdump tcpdump 3.9.4 tcpdump tcpdump 3.9.1 tcpdump tcpdump 3.8.3 tcpdump tcpdump 3.6.2 tcpdump tcpdump 4.7.2 tcpdump tcpdump 4.7.0 tcpdump tcpdump 4.6.2 tcpdump tcpdump 4.5.0 Redhat Enterprise Linux 7 Redhat Enterprise Linux 6 Redhat Enterprise Linux 5 |
| Not Vulnerable: |
tcpdump tcpdump 4.9.2 |
Discussion
Tcpdump CVE-2017-12995 Denial of Service Vulnerability
Tcpdump is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause a denial-of-service condition.
Tcpdump is prone to a denial-of-service vulnerability.
An attacker can exploit this issue to cause a denial-of-service condition.
Exploit / POC
Tcpdump CVE-2017-12995 Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Tcpdump CVE-2017-12995 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Tcpdump CVE-2017-12995 Denial of Service Vulnerability
References:
References:
- tcpdump Homepage (tcpdump)
- CVE-2017-12995 (Redhat)
- USN-3415-1: tcpdump vulnerabilities (Ubuntu)
- Bug 1490561 - (CVE-2017-12995) CVE-2017-12995 tcpdump: Infinite loop due to a bu (Redhat)