Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Gentoo: GLSA-200708-15 Critical Severity Tcpdump Buffer Overflow

gentoo
Calendar Grey July 29, 2007
Dist Gentoo Esm H88
The recent security advisory from Gentoo, GLSA 202109-15, highlights a critical severity issue in Wireshark due to a buffer overflow vulnerability that can lead to remote code execution.
A vulnerability has been discovered in tcpdump, allowing for the execution of arbitrary code, possibly with root privileges.

Summary

Gentoo Linux Security Advisory GLSA 200707-14 https://security.gentoo.org/ Severity: High Title: tcpdump: Integer overflow Date: July 28, 2007 Bugs: #184815 ID: 200707-14

Synopsis ======= A vulnerability has been discovered in tcpdump, allowing for the execution of arbitrary code, possibly with root privileges.
Background ========= tcpdump is a tool for capturing and inspecting network traffic.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-analyzer/tcpdump < 3.9.5-r3 >= 3.9.5-r3
========== mu-b from Digital Labs discovered that the return value of a snprintf() call is not properly checked before being used. This could lead to an integer overflow.
Impact ===...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
critical
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here