Infinite loop in nfdump - #VU142747
Published: August 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a loop with an unreachable exit condition in ReadAppendix() in src/libnffile/nffile.c when parsing a crafted nfcapd file. A remote attacker can trick the victim into opening a crafted file to cause a denial of service.
User interaction is required to open a crafted file with nfdump -r.