Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-31912

Опубликовано: 05 сент. 2026
Источник: debian

Описание

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading the OS process memory in the 32GiB around the buffer on 64-bit architectures and in the entire address space on 32-bit architectures.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libpcapfixed1.10.7-1package
libpcapno-dsatrixiepackage

Примечания

  • Fixed by: https://github.com/the-tcpdump-group/libpcap/commit/d3f358d3cffbe1ecb94d5284b3e81f052a0adcb9 (libpcap-1.10.7)

  • https://www.openwall.com/lists/oss-security/2026/09/09/2

Связанные уязвимости

CVSS3: 5.5
ubuntu
8 дней назад

(libpcap BPF interpreter detects neither reaching the end of the filter ...)

CVSS3: 6.1
redhat
9 дней назад

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading the OS process memory in the 32GiB around the buffer on 64-bit architectures and in the entire address space on 32-bit architectures.

CVSS3: 5.5
nvd
9 дней назад

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading the OS process memory in the 32GiB around the buffer on 64-bit architectures and in the entire address space on 32-bit architectures.

msrc
8 дней назад

OOBR in libpcap before 1.10.7

CVSS3: 5.5
github
9 дней назад

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading the OS process memory in the 32GiB around the buffer on 64-bit architectures and in the entire address space on 32-bit architectures.