CVE-2025-11961
pcap_ether_aton() is an auxiliary function in libpcap, it takes a string argument and returns a fixed-size allocated buffer. The string argument must be a well-formed MAC-48 address in one of the supported formats, but this requirement has been poorly documented. If an application calls the function with an argument that deviates from the expected format, the function can read data beyond the end of the provided string and write data beyond the end of the allocated buffer.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N
- Puntuación base: 1.9
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.12%
- Percentil entre todas las CVEs puntuadas: 2
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
CWE
- CWE-122, CWE-126
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2025-11961",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2025-11961",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2026-01-02T14:23:09.479384Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "security@tcpdump.org",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 1.9,
"attackVector": "LOCAL",
"baseSeverity": "LOW",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N",
"integrityImpact": "LOW",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "NONE",
"privilegesRequired": "HIGH",
"confidentialityImpact": "NONE"
},
"impactScore": 1.4,
"exploitabilityScore": 0.5
}
]
},
"affected": [
{
"source": "security@tcpdump.org",
"affectedData": [
{
"repo": "https://github.com/the-tcpdump-group/libpcap/",
"vendor": "The Tcpdump Group",
"product": "libpcap",
"versions": [
{
"status": "affected",
"version": "0",
"lessThan": "1.10.6",
"versionType": "semver"
}
],
"programFiles": [
"nametoaddr.c"
],
"defaultStatus": "unaffected",
"programRoutines": [
{
"name": "pcap_ether_aton()"
}
]
}
]
}
],
"published": "2025-12-31T01:15:54.500",
"references": [
{
"url": "https://github.com/the-tcpdump-group/libpcap/commit/b2d2f9a9a0581c40780bde509f7cc715920f1c02",
"source": "security@tcpdump.org"
}
],
"vulnStatus": "Deferred",
"weaknesses": [
{
"type": "Secondary",
"source": "security@tcpdump.org",
"description": [
{
"lang": "en",
"value": "CWE-122"
},
{
"lang": "en",
"value": "CWE-126"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "pcap_ether_aton() is an auxiliary function in libpcap, it takes a string argument and returns a fixed-size allocated buffer. The string argument must be a well-formed MAC-48 address in one of the supported formats, but this requirement has been poorly documented. If an application calls the function with an argument that deviates from the expected format, the function can read data beyond the end of the provided string and write data beyond the end of the allocated buffer."
},
{
"lang": "es",
"value": "pcap_ether_aton() es una función auxiliar en libpcap, toma un argumento de cadena y devuelve un búfer asignado de tamaño fijo. El argumento de cadena debe ser una dirección MAC-48 bien formada en uno de los formatos admitidos, pero este requisito ha sido mal documentado. Si una aplicación llama a la función con un argumento que se desvía del formato esperado, la función puede leer datos más allá del final de la cadena proporcionada y escribir datos más allá del final del búfer asignado."
}
],
"lastModified": "2026-06-17T08:31:29.497",
"sourceIdentifier": "security@tcpdump.org"
}