Infinite loop in nfdump - #VU142741
Published: August 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to loop with unreachable exit condition in ProcessSubTemplate() in src/libnffile/nfxV3.c when processing IPFIX subTemplateMultiList data with a zero-size subTemplateSize entry. A remote attacker can send two specially crafted UDP datagrams to cause a denial of service.
The issue causes CPU exhaustion without memory corruption, a crash, or disk exhaustion.