CVE-2018-14462: High severity macos catalina vulnerability
Published Oct 3, 2019
·Updated
Last updated 24 July 2024
Other sources
tcpdump. Multiple issues were addressed by updating to tcpdump version 4.9.3 and libpcap version 1.9.1
The ICMP parser in tcpdump before 4.9.3 has a buffer over-read in print-icmp.c:icmpprint().
— Launchpad
Credit
CVE-2017-16808, CVE-2018-10103, CVE-2018-10105, CVE-2018-14461, CVE-2018-14462, CVE-2018-14463, CVE-2018-14464, CVE-2018-14465, CVE-2018-14466, CVE-2018-14467, CVE-2018-14468, CVE-2018-14469, CVE-2018-14470, CVE-2018-14879, CVE-2018-14880, CVE-2018-14881, CVE-2018-14882, CVE-2018-16227, CVE-2018-16228, CVE-2018-16229, CVE-2018-16230, CVE-2018-16300, CVE-2018-16301, CVE-2018-16451, CVE-2018-16452, CVE-2019-15166, CVE-2019-15167
Affected Software
17 affected componentsFixes available
debian/tcpdump
4.99.0-2+deb11u14.99.3-14.99.5-1
Apple macOS Catalina<10.15.2
10.15.2
Apple Mojave
Apple High Sierra
tcpdump tcpdump<4.9.3
F5 Traffix Signaling Delivery Controller>=5.0.0<=5.1.0
Apple iOS and macOS<10.15.2
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Fedoraproject Fedora=29
Fedoraproject Fedora=30
Fedoraproject Fedora=31
openSUSE Leap=15.0
openSUSE Leap=15.1
redhat Enterprise Linux=7.0
redhat Enterprise Linux=8.0
Remediation
Event History
Oct 3, 2019
CVE Published
via MITRE·03:11 PM
Data Sourced
via MITRE·03:11 PM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·10:51 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·01:56 AM
RemedyDescriptionSeverityAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8837
- CVE-2019-8853
- CVE-2019-8856
- CVE-2019-8848
- CVE-2019-8834
- CVE-2019-8842
- CVE-2019-8839
- CVE-2019-8830
- CVE-2019-8851
- CVE-2019-8833
- CVE-2019-8828
- CVE-2019-8838
- CVE-2019-8847
- CVE-2019-8852
- CVE-2019-15903
- CVE-2020-9782
- CVE-2012-1164
- CVE-2012-2668
- CVE-2013-4449
- CVE-2015-1545
- CVE-2019-13057
- CVE-2019-13565
- CVE-2019-8832
- CVE-2017-16808
- CVE-2018-10103
- CVE-2018-10105
- CVE-2018-14461
- CVE-2018-14462
- CVE-2018-14463
- CVE-2018-14464
- CVE-2018-14465
- CVE-2018-14466
- CVE-2018-14467
- CVE-2018-14468
- CVE-2018-14469
- CVE-2018-14470
- CVE-2018-14879
- CVE-2018-14880
- CVE-2018-14881
- CVE-2018-14882
- CVE-2018-16227
- CVE-2018-16228
- CVE-2018-16229
- CVE-2018-16230
- CVE-2018-16300
- CVE-2018-16301
- CVE-2018-16451
- CVE-2018-16452
- CVE-2019-15166
- CVE-2019-15167
- CVE-2019-15126
Frequently Asked Questions
1
What is the vulnerability severity of CVE-2018-14462?
The vulnerability severity of CVE-2018-14462 is high.
2
How does CVE-2018-14462 affect macOS Catalina?
CVE-2018-14462 affects macOS Catalina versions up to but not including 10.15.2.
3
How does CVE-2018-14462 affect Ubuntu?
CVE-2018-14462 affects Ubuntu versions 14.04, 16.04, and 18.04.
4
How do I fix CVE-2018-14462 on Ubuntu?
To fix CVE-2018-14462 on Ubuntu, update tcpdump to version 4.9.3-0ubuntu0.14.04.1+, 4.9.3-0ubuntu0.16.04.1, or 4.9.3-0ubuntu0.18.04.1.
5
Where can I find more information about CVE-2018-14462?
More information about CVE-2018-14462 can be found on the GitHub repository and the Debian LTS announcement.