CVE-2007-3798: Integer Overflow
Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3798?
CVE-2007-3798 is considered a critical vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2007-3798?
To fix CVE-2007-3798, update tcpdump to version 3.9.7 or later, or apply the relevant patches provided by your operating system vendor.
What software versions are affected by CVE-2007-3798?
CVE-2007-3798 affects tcpdump versions up to 3.9.6, as well as several Ubuntu, Debian, Slackware, and FreeBSD versions using these tcpdump versions.
What type of attacks can exploit CVE-2007-3798?
CVE-2007-3798 can be exploited through crafted BGP packets containing malicious TLVs, leading to arbitrary code execution.
Is CVE-2007-3798 specific to certain operating systems?
Yes, CVE-2007-3798 is particularly relevant to multiple Linux distributions and FreeBSD, as they utilize the affected versions of tcpdump.