Out-of-bounds read in Tcpdump - CVE-2015-2154
Published: August 3, 2017
Vulnerability identifier: #VU7687
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2015-2154
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The weakness exists due to an error in the osi_print_cksum function in print-isoclns.c in the ethernet printer. A remote attacker can send a specially crafted length offset or base pointer checksum value, trigger out-of-bounds read and cause the system to crash.
Successful exploitation of the vulnerability results in denial of service.
The weakness exists due to an error in the osi_print_cksum function in print-isoclns.c in the ethernet printer. A remote attacker can send a specially crafted length offset or base pointer checksum value, trigger out-of-bounds read and cause the system to crash.
Successful exploitation of the vulnerability results in denial of service.
Affected software
Tcpdump
Debian Linux
Gentoo Linux
Amazon Linux AMI
Red Hat Enterprise Linux Server
Ubuntu
Fedora
tcpdump
Debian Linux
Gentoo Linux
Amazon Linux AMI
Red Hat Enterprise Linux Server
Ubuntu
Fedora
tcpdump
How to mitigate CVE-2015-2154
Update to version 4.7.2 or later.
tcpdump - addressed in versions 4.7.3-1.fc21, 4.7.3-1.fc22