CVE-2018-14466: High severity macos catalina vulnerability
Last updated 24 July 2024
Other sources
tcpdump. Multiple issues were addressed by updating to tcpdump version 4.9.3 and libpcap version 1.9.1
The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rxcachefind() and rxcacheinsert().
Credit
Affected Software
Remediation
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8837
- CVE-2019-8853
- CVE-2019-8856
- CVE-2019-8848
- CVE-2019-8834
- CVE-2019-8842
- CVE-2019-8839
- CVE-2019-8830
- CVE-2019-8851
- CVE-2019-8833
- CVE-2019-8828
- CVE-2019-8838
- CVE-2019-8847
- CVE-2019-8852
- CVE-2019-15903
- CVE-2020-9782
- CVE-2012-1164
- CVE-2012-2668
- CVE-2013-4449
- CVE-2015-1545
- CVE-2019-13057
- CVE-2019-13565
- CVE-2019-8832
- CVE-2017-16808
- CVE-2018-10103
- CVE-2018-10105
- CVE-2018-14461
- CVE-2018-14462
- CVE-2018-14463
- CVE-2018-14464
- CVE-2018-14465
- CVE-2018-14466
- CVE-2018-14467
- CVE-2018-14468
- CVE-2018-14469
- CVE-2018-14470
- CVE-2018-14879
- CVE-2018-14880
- CVE-2018-14881
- CVE-2018-14882
- CVE-2018-16227
- CVE-2018-16228
- CVE-2018-16229
- CVE-2018-16230
- CVE-2018-16300
- CVE-2018-16301
- CVE-2018-16451
- CVE-2018-16452
- CVE-2019-15166
- CVE-2019-15167
- CVE-2019-15126
Frequently Asked Questions
What is CVE-2018-14466?
CVE-2018-14466 is a vulnerability in tcpdump that allows for a buffer over-read, potentially leading to information disclosure or a denial of service.
How does CVE-2018-14466 affect tcpdump?
CVE-2018-14466 affects tcpdump versions before 4.9.3, allowing an attacker to exploit a buffer over-read vulnerability in the Rx parser.
How can I fix CVE-2018-14466?
To fix CVE-2018-14466, update to tcpdump version 4.9.3 or later.
Which software versions are affected by CVE-2018-14466?
Tcpdump versions before 4.9.3 are affected by CVE-2018-14466.
Where can I find more information about CVE-2018-14466?
You can find more information about CVE-2018-14466 on the official tcpdump GitHub page and from the Debian LTS Announce mailing list.