Описание
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2018-19519
- https://access.redhat.com/errata/RHSA-2019:3976
- https://github.com/zyingp/temp/blob/master/tcpdump.md
- https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44516
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/62XY42U6HY3H2APR5EHNWCZ7SAQNMMJN
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FNYXF3IY2X65IOD422SA6EQUULSGW7FN
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/R2UDPOSGVJQIYC33SQBXMDXHH4QDSDMU
- https://usn.ubuntu.com/4252-1
- https://usn.ubuntu.com/4252-2
- http://www.securityfocus.com/bid/106098
Связанные уязвимости
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_prefix function of print-hncp.c via crafted packet data because of missing initialization.
In tcpdump 4.9.2, a stack-based buffer over-read exists in the print_p ...