Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

216 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)5.6%—Tcpdump4/5/200416/6/2026
TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read, as demonstrated by the Striker ISAKMP Protocol Test Suite.
ModificadaMedia (5)60%💥 ExploitTcpdump4/5/200416/6/2026
Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length that becomes less than 8 during byte order conversion, which causes an out-of-bounds read, as demonstrated by the Striker…
ModificadaAlta (7.5)5.3%—Redhat TcpdumpRedhat Linux17/2/200416/6/2026
tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.
ModificadaMedia (5)3.6%—LBL Tcpdump17/2/200416/6/2026
The print_attr_string function in print-radius.c for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via a RADIUS attribute with a large length value.
ModificadaMedia (5)5.3%—LBL Tcpdump17/2/200416/6/2026
The rawprint function in the ISAKMP decoding routines (print-isakmp.c) for tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (segmentation fault) via malformed ISAKMP packets that cause invalid "len" or "loc" values to be used in a loop, a different vulnerability than CVE-2003-0989.
ModificadaMedia (5)9.9%💥 ExploitLBL Tcpdump17/2/200416/6/2026
The L2TP protocol parser in tcpdump 3.8.1 and earlier allows remote attackers to cause a denial of service (infinite loop and memory consumption) via a packet with invalid data to UDP port 1701, which causes l2tp_avp_print to use a bad length value when calling print_octets.
ModificadaMedia (4.6)0.37%—Redhat TcpdumpRedhat Linux9/6/200316/6/2026
tcpdump does not properly drop privileges to the pcap user when starting up.
ModificadaMedia (5)1.9%—LBL Tcpdump31/3/200316/6/2026
Unknown vulnerability in tcpdump before 3.7.2 related to an inability to "Handle unknown RADIUS attributes properly," allows remote attackers to cause a denial of service (infinite loop), a different vulnerability than CAN-2003-0093.
ModificadaMedia (5)11%💥 ExploitLBL Tcpdump7/3/200316/6/2026
isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop.
ModificadaMedia (5)2.0%—LBL Tcpdump3/3/200316/6/2026
The RADIUS decoder in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service (crash) via an invalid RADIUS packet with a header length field of 0, which causes tcpdump to generate data within an infinite loop.
ModificadaAlta (7.5)2.4%—LBL Tcpdump23/12/200216/6/2026
The BGP decoding routines in tcpdump 3.6.x before 3.7 do not properly copy data, which allows remote attackers to cause a denial of service (application crash).
ModificadaAlta (7.5)5.0%—LBL Tcpdump18/6/200216/6/2026
Buffer overflow in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via an NFS packet.
ModificadaAlta (7.5)2.9%💥 ExploitLBL Tcpdump28/11/200125/9/2026
ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet.
ModificadaAlta (7.5)4.8%—LBL Tcpdump17/7/200116/6/2026
Buffer overflow in print-rx.c of tcpdump 3.x (probably 3.6x) allows remote attackers to cause a denial of service and possibly execute arbitrary code via AFS RPC packets with invalid lengths that trigger an integer signedness error, a different vulnerability than CVE-2000-1026.
ModificadaAlta (10)6.0%💥 ExploitLBL Tcpdump11/12/200023/9/2026
Multiple buffer overflows in LBNL tcpdump allow remote attackers to execute arbitrary commands.
ModificadaMedia (5)7.6%💥 ExploitEthereal Group EtherealLBL Tcpdump31/5/199916/6/2026
tcpdump, Ethereal, and other sniffer packages allow remote attackers to cause a denial of service via malformed DNS packets in which a jump offset refers to itself, which causes tcpdump to enter an infinite loop while decompressing the packet.
Orbitaley — Vulnerabilidades