Integer overflow in nfdump - #VU142750
Published: August 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to integer overflow or wraparound in PushArrayNextElement and the NBAR/ifvrf option data processing path when processing a crafted IPFIX or NetFlow v9 option template followed by an oversized data flowset. A remote attacker can send crafted UDP datagrams to corrupt the array record header and cause a denial of service.
Exploitation is reachable with two unauthenticated UDP packets to the nfcapd collector: one to install the option template and one to supply the oversized data flowset.