Tcpdump Group libpcap
7 known vulnerabilities in Tcpdump Group libpcap, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-6554 CVSS 5.5 medium libpcap BPF interpreter treats the offset in the 'ja L' BPF instruction as a signed integer to implement looping via backward jumps, but…
- CVE-2026-6244 CVSS 5.5 medium libpcap BPF interpreter for the 'div #k' and 'mod #k' ALU instructions does not check whether the immediate value is zero. In particular…
- CVE-2026-31912 CVSS 5.5 medium libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a…
- CVE-2026-31911 CVSS 5.5 medium libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a…
- CVE-2026-18313 CVSS 4.3 medium rpcapd can allocate up to 65536 bytes per each RPCAP_MSG_UPDATEFILTER_REQ or RPCAP_MSG_STARTCAP_REQ message received from the client, but…
- CVE-2026-18238 CVSS 5.0 medium The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious…
- CVE-2026-0799 CVSS 8.7 high In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must…