Tcpflow · Tcpflow · CVE-2018-14938
**Name of the Vulnerable Software and Affected Versions**
TCPFLOW versions prior to 1.5.0-alpha
**Description**
An issue in the wifipcap/wifipcap.cpp file allows for an integer overflow in the `handle prism` function during caplen processing. If the caplen is less than 144, this can cause an integer overflow in the `handle 80211` function, resulting in an out-of-bounds read. This may allow access to sensitive memory or lead to a denial of service.
**Recommendations**
For versions prior to 1.5.0-alpha, as a temporary workaround, consider disabling the `handle prism` and `handle 80211` functions until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.