tcpdump CVE-2015-2154 Denial of Service Vulnerability
BID:73017
Info
tcpdump CVE-2015-2154 Denial of Service Vulnerability
| Bugtraq ID: | 73017 |
| Class: | Input Validation Error |
| CVE: |
CVE-2015-2154 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2015 12:00AM |
| Updated: | Dec 08 2015 10:03PM |
| Credit: | Michael Richardson |
| Vulnerable: |
tcpdump tcpdump 3.9.6 tcpdump tcpdump 3.9.4 tcpdump tcpdump 3.9.1 tcpdump tcpdump 3.8.3 tcpdump tcpdump 3.6.2 Gentoo Linux |
| Not Vulnerable: | |
Discussion
tcpdump CVE-2015-2154 Denial of Service Vulnerability
tcpdump is prone to a remote denial-of-service vulnerability because it fails to properly bounds-check user-supplied data.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
tcpdump is prone to a remote denial-of-service vulnerability because it fails to properly bounds-check user-supplied data.
An attacker can leverage this issue to crash the affected application, denying service to legitimate users.
Exploit / POC
tcpdump CVE-2015-2154 Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
tcpdump CVE-2015-2154 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.