Integer overflow in nfdump - #VU142748

 

Integer overflow in nfdump - #VU142748

Published: August 15, 2026


Vulnerability identifier: #VU142748
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-190
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause a denial of service.

The vulnerability exists due to integer overflow in Process_v9_option_templates() in src/netflow/netflow_v9.c when processing NetFlow v9 option templates. A remote attacker can send a specially crafted UDP packet to cause a denial of service.

The issue can also cause heap data to be read beyond the allocation boundary and written into nbar or ifvrf flow records stored on disk.


Affected software

nfdump

Remediation

Install security update from vendor's website.

nfdump - update to 1.7.9

External References

Related Security Bulletins