CVE-2011-1935
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.65%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 3.65% probability · 89th percentile
- CISA KEV
- Not listed
- Affected
- tcpdump/libpcap
- Source
- secalert@redhat.com
References
- http://article.gmane.org/gmane.network.tcpdump.devel/4968Broken Link, Issue Tracking, Third Party Advisory
- http://thread.gmane.org/gmane.network.tcpdump.devel/5018Broken Link, Issue Tracking, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2011/05/19/11Broken Link, Issue Tracking, Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2014/02/08/5Mailing List, Third Party Advisory
- https://bugs.debian.org/cgi-bin/bugreport.cgi?att=1%3Bbug=623868%3Bfilename=0001-Fix-the-calculation-of-the-frame-size-in-memory-mapp.patch%3Bmsg=10
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=623868Issue Tracking, Patch, Third Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2011-1935/Issue Tracking, Third Party Advisory
- http://article.gmane.org/gmane.network.tcpdump.devel/4968Broken Link, Issue Tracking, Third Party Advisory
- http://thread.gmane.org/gmane.network.tcpdump.devel/5018Broken Link, Issue Tracking, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2011/05/19/11Broken Link, Issue Tracking, Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2014/02/08/5Mailing List, Third Party Advisory
- https://bugs.debian.org/cgi-bin/bugreport.cgi?att=1%3Bbug=623868%3Bfilename=0001-Fix-the-calculation-of-the-frame-size-in-memory-mapp.patch%3Bmsg=10
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=623868Issue Tracking, Patch, Third Party Advisory
- https://security-tracker.debian.org/tracker/CVE-2011-1935/Issue Tracking, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.