threat
engine
.sh
Back
·
··:··
Home
/
Product
/
tcpdump libpcap
Product
tcpdump libpcap
8 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2024-8006
< 1.10.5
Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture support en
4.4
MEDIUM
CVE-2023-7256
< 1.10.5
In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinf
4.4
MEDIUM
CVE-2019-15165
< 1.9.1
sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.
5.3
MEDIUM
CVE-2019-15164
< 1.9.1
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
5.3
MEDIUM
CVE-2019-15163
< 1.9.1
rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash)
7.5
HIGH
CVE-2019-15162
< 1.9.1
rpcapd/daemon.c in libpcap before 1.9.1 on non-Windows platforms provides details about why authentication failed, which might mak
5.3
MEDIUM
CVE-2019-15161
< 1.9.1
rpcapd/daemon.c in libpcap before 1.9.1 mishandles certain length values because of reuse of a variable. This may open up an attac
5.3
MEDIUM
CVE-2011-1935
>= 1.1.1 and < 1.2.1
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, whi
9.8
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin