Out-of-bounds read in nfdump - #VU142757
Published: August 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to out-of-bounds read in decodeIPLayer4() in src/sflow/sflow_process.c when processing sFlow flow samples containing truncated TCP headers. A remote attacker can send a specially crafted sFlow flow sample to disclose sensitive information.
This issue occurs when the captured packet header is truncated near the start of the TCP header, such as with short snapshot lengths.