CVE-2020-8037
04.11.2020, 18:15
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.Enginsight
| Vendor | Product | Version |
|---|---|---|
| tcpdump | tcpdump | 4.9.3 |
| debian | debian_linux | 9.0 |
| apple | mac_os_x | 𝑥 < 10.14.6 |
| apple | mac_os_x | 10.15 ≤ 𝑥 < 10.15.7 |
| apple | mac_os_x | 10.14.6 |
| apple | mac_os_x | 10.14.6:security_update_2019-001 |
| apple | mac_os_x | 10.14.6:security_update_2019-002 |
| apple | mac_os_x | 10.14.6:security_update_2020-001 |
| apple | mac_os_x | 10.14.6:security_update_2020-002 |
| apple | mac_os_x | 10.14.6:security_update_2020-003 |
| apple | mac_os_x | 10.14.6:security_update_2020-004 |
| apple | mac_os_x | 10.14.6:security_update_2020-005 |
| apple | mac_os_x | 10.14.6:security_update_2020-006 |
| apple | mac_os_x | 10.14.6:security_update_2020-007 |
| apple | mac_os_x | 10.14.6:security_update_2021-001 |
| apple | mac_os_x | 10.15.7 |
| apple | mac_os_x | 10.15.7:security_update_2020-001 |
| apple | mac_os_x | 10.15.7:security_update_2021-001 |
| apple | mac_os_x | 10.15.7:supplemental_update |
| apple | macos | 11.0 ≤ 𝑥 < 11.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| tcpdump |
|
References