Описание
libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program can terminate the OS process.
A flaw was found in libpcap. A local attacker could provide a crafted filter program containing an invalid Berkeley Packet Filter (BPF) opcode. This could cause the operating system (OS) process using libpcap to terminate, leading to a Denial of Service (DoS).
Отчет
This Moderate impact flaw in libpcap allows a local attacker to cause a denial of service by providing a specially crafted BPF filter program. The vulnerability arises from the BPF interpreter's handling of invalid opcodes, leading to process termination in uncommon scenarios where untrusted BPF filters are processed.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | libpcap | Fix deferred | ||
| Red Hat Enterprise Linux 6 | libpcap | Fix deferred | ||
| Red Hat Enterprise Linux 7 | libpcap | Fix deferred | ||
| Red Hat Enterprise Linux 8 | libpcap | Fix deferred | ||
| Red Hat Enterprise Linux 9 | libpcap | Fix deferred | ||
| Red Hat OpenShift Container Platform 4 | openshift/ose-rhel-coreos-8 | Fix deferred | ||
| Red Hat OpenShift Container Platform 4 | openshift/ose-rhel-coreos-9 | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
(libpcap BPF interpreter calls abort() if it encounters a BPF instructi ...)
libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program can terminate the OS process.
libpcap BPF interpreter calls abort() if it encounters a BPF instructi ...
libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program can terminate the OS process.
EPSS
5.5 Medium
CVSS3