CVE-2017-13024

Source
Severity Medium
Remote Yes
Type Denial of service
Description
An out-of-bounds read vulnerability was discovered in tcpdump's handling of IPv6 mobility in tcpdump <= 4.9.1. An attacker could craft a malicious pcap file or send specially crafted packets to the network that would cause tcpdump to crash while processing the packet data.
Group Package Affected Fixed Severity Status Ticket
AVG-361 tcpdump 4.9.1-1 4.9.2-1 Critical Fixed
Date Advisory Group Package Severity Description
13 Sep 2017 ASA-201709-5 AVG-361 tcpdump Critical multiple issues
References
https://github.com/the-tcpdump-group/tcpdump/commit/2e1f6d9320afa83abc1ff716c7981fa504edadf2
https://github.com/the-tcpdump-group/tcpdump/commit/7d3aba9f06899d0128ef46e8a2fa143c6fad8f62