Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Zillr0O

#27879de 53,635
9.1CVSS total
Vulnerabilidades · 1
PT-2018-12813
9.1
2018-08-04
Tcpflow · Tcpflow · CVE-2018-14938
**Name of the Vulnerable Software and Affected Versions** TCPFLOW versions prior to 1.5.0-alpha **Description** An issue in the wifipcap/wifipcap.cpp file allows for an integer overflow in the `handle prism` function during caplen processing. If the caplen is less than 144, this can cause an integer overflow in the `handle 80211` function, resulting in an out-of-bounds read. This may allow access to sensitive memory or lead to a denial of service. **Recommendations** For versions prior to 1.5.0-alpha, as a temporary workaround, consider disabling the `handle prism` and `handle 80211` functions until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.