Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 506
Alerts This Week
Warning Icon 1 506

Fedora 25: FEDORA-2017-7ecbc90157 Critical Tcpdump Buffer Overflow

fedora
Calendar Grey February 14, 2017
Scroller Fedora
Important patch released for Wireshark tackles several memory corruption vulnerabilities. Update promptly to maintain data integrity.
Security fix for CVE-2016-7922, CVE-2016-7923, CVE-2016-7924, CVE-2016-7925, CVE-2016-7926, CVE-2016-7927, CVE-2016-7928, CVE-2016-7929, CVE-2016-7930, CVE-2016-7931, CVE-2016-7932...

Summary

Tcpdump is a command-line tool for monitoring network traffic.

Tcpdump can capture and display the packet headers on a particular

network interface or on all interfaces. Tcpdump can display all of

the packet headers, or just the ones that match particular criteria.

Install tcpdump if you need a program to monitor network traffic.

Update Information:

Security fix for CVE-2016-7922, CVE-2016-7923, CVE-2016-7924, CVE-2016-7925, CVE-2016-7926, CVE-2016-7927, CVE-2016-7928, CVE-2016-7929, CVE-2016-7930, CVE-2016-7931, CVE-2016-7932, CVE-2016-7933, CVE-2016-7934, CVE-2016-7935, CVE-2016-7936, CVE-2016-7937, CVE-2016-7938, CVE-2016-7939, CVE-2016-7940, CVE-2016-7973, CVE-2016-7974, CVE-2016-7975, CVE-2016-7983, CVE-2016-7984, CVE-2016-7985, CVE-2016-7986, CVE-2016-7992, CVE-2016-7993, CVE-2016-8574, CVE-2016-8575, CVE-2017-5202, CVE-2017-5203, CVE-2017-5204, CVE-2017-5205, CVE-2017-5341, CVE-2017-5342, CVE-2017-5482, CVE-2017-5483, CVE-2017-5484, CVE-2017-5485, CVE-2017-5486

Change Log

References


[ 1 ] Bug #1419066 - CVE-2016-7922 tcpdump: multiple overflow issues in protocol decoding https://bugzilla.redhat.com/show_bug.cgi?id=1419066 [ 2 ] Bug #1419067 - CVE-2016-7923 tcpdump: Buffer overflow in ARP parser in print-arp.c:arp_print() https://bugzilla.redhat.com/show_bug.cgi?id=1419067 [ 3 ] Bug #1419068 - CVE-2016-7924 tcpdump: Buffer overflow in ATM parser in print-atm.c:oam_print() https://bugzilla.redhat.com/show_bug.cgi?id=1419068 [ 4 ] Bug #1419070 - CVE-2016-7925 tcpdump: Buffer overflow in compressed SLIP parser in print-sl.c:sl_if_print() https://bugzilla.redhat.com/show_bug.cgi?id=1419070 [ 5 ] Bug #1419071 - CVE-2016-7926 tcpdump: Buffer overflow in Ethernet parser in print-ether.c:ethertype_print() https://bugzilla.redhat.com/show_bug.cgi?id=1419071 [ 6 ] Bug #1419072 - CVE-2016-7927 tcpdump: Buffer overflow in IEEE 802.11 parser in print-802_11.c:ieee802_11_radio_print() https://bugzilla.redhat.com/show...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade tcpdump' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: tcpdump
Product: Fedora 25
Version: 4.9.0
Release: 1.fc25
Summary: A network traffic monitoring tool

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.