Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
216 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 5.6% | — | Tcpdump | 4/5/2004 | 16/6/2026 | TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite. | |
| Modificada | Media (5) | 60% | 💥 Exploit | Tcpdump | 4/5/2004 | 16/6/2026 | Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker… | |
| Modificada | Alta (7.5) | 5.3% | — | Redhat TcpdumpRedhat Linux | 17/2/2004 | 16/6/2026 | tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057. | |
| Modificada | Media (5) | 3.6% | — | LBL Tcpdump | 17/2/2004 | 16/6/2026 | The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value. | |
| Modificada | Media (5) | 5.3% | — | LBL Tcpdump | 17/2/2004 | 16/6/2026 | The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989. | |
| Modificada | Media (5) | 9.9% | 💥 Exploit | LBL Tcpdump | 17/2/2004 | 16/6/2026 | The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets. | |
| Modificada | Media (4.6) | 0.37% | — | Redhat TcpdumpRedhat Linux | 9/6/2003 | 16/6/2026 | tcpdump does not properly drop privileges to the pcap user when starting up. | |
| Modificada | Media (5) | 1.9% | — | LBL Tcpdump | 31/3/2003 | 16/6/2026 | Unknown vulnerability in tcpdump before 3.7.2 related to an inability to "Handle unknown RADIUS attributes properly," allows remote attackers to cause a denial of service (infinite loop), a different vulnerability than CAN-2003-0093. | |
| Modificada | Media (5) | 11% | 💥 Exploit | LBL Tcpdump | 7/3/2003 | 16/6/2026 | isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop. | |
| Modificada | Media (5) | 2.0% | — | LBL Tcpdump | 3/3/2003 | 16/6/2026 | The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop. | |
| Modificada | Alta (7.5) | 2.4% | — | LBL Tcpdump | 23/12/2002 | 16/6/2026 | The BGP decoding routines in tcpdump 3.6.x before 3.7 do not properly copy data, which allows remote attackers to cause a denial of service (application crash). | |
| Modificada | Alta (7.5) | 5.0% | — | LBL Tcpdump | 18/6/2002 | 16/6/2026 | Buffer overflow in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via an NFS packet. | |
| Modificada | Alta (7.5) | 2.9% | 💥 Exploit | LBL Tcpdump | 28/11/2001 | 25/9/2026 | ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet. | |
| Modificada | Alta (7.5) | 4.8% | — | LBL Tcpdump | 17/7/2001 | 16/6/2026 | Buffer overflow in print-rx.c of tcpdump 3.x (probably 3.6x) allows remote attackers to cause a denial of service and possibly execute arbitrary code via AFS RPC packets with invalid lengths that trigger an integer signedness error, a different vulnerability than CVE-2000-1026. | |
| Modificada | Alta (10) | 6.0% | 💥 Exploit | LBL Tcpdump | 11/12/2000 | 23/9/2026 | Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands. | |
| Modificada | Media (5) | 7.6% | 💥 Exploit | Ethereal Group EtherealLBL Tcpdump | 31/5/1999 | 16/6/2026 | tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a jump offset refers to itself, which causes tcpdump to enter an infinite loop while decompressing the packet. |