PT-2017-4931 · Tcpdump+1 · Libpcap+1

Robert Edmonds

·

Published

2017-10-20

·

Updated

2021-06-15

·

CVE-2011-1935

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: libpcap version 1.1.1
Description: The issue is related to the pcap-linux.c file in libpcap, where setting the snaplen may cause packet truncation. This could potentially allow remote attackers to send arbitrary data without being detected by crafting specific packets.
Recommendations: For libpcap version 1.1.1, update to a version that includes the commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2019-1320
CVE-2011-1935

Affected Products

Alt Linux
Libpcap