Vulnerability CVE-2019-15161: Information

Description

rpcapd/daemon.c in libpcap before 1.9.1 mishandles certain length values because of reuse of a variable. This may open up an attack vector involving extra data at the end of a request.

Severity: MEDIUM (5.3) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Published: Oct. 3, 2019
Modified: Nov. 7, 2023
Error type identifier: CWE-131

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
libpcapsisyphus1.9.1-alt11.10.4-alt1ALT-PU-2019-3119-1239373Fixed
libpcapp101.9.1-alt11.9.1-alt2ALT-PU-2019-3119-1239373Fixed
libpcapp91.9.1-alt21.9.1-alt2ALT-PU-2020-3562-1263886Fixed
libpcapc10f11.9.1-alt11.9.1-alt2ALT-PU-2019-3119-1239373Fixed
libpcapc9f21.9.1-alt21.9.1-alt2ALT-PU-2021-1432-1267221Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:tcpdump:libpcap:*:*:*:*:*:*:*:*
      End excliding
      1.9.1