CVE-2018-16229: High severity Apple macOS Catalina vulnerability
Published Oct 3, 2019
·Updated
Last updated 25 August 2025
Other sources
tcpdump. Multiple issues were addressed by updating to tcpdump version 4.9.3 and libpcap version 1.9.1
The DCCP parser in tcpdump before 4.9.3 has a buffer over-read in print-dccp.c:dccpprintoption().
— Launchpad
Credit
CVE-2017-16808, CVE-2018-10103, CVE-2018-10105, CVE-2018-14461, CVE-2018-14462, CVE-2018-14463, CVE-2018-14464, CVE-2018-14465, CVE-2018-14466, CVE-2018-14467, CVE-2018-14468, CVE-2018-14469, CVE-2018-14470, CVE-2018-14879, CVE-2018-14880, CVE-2018-14881, CVE-2018-14882, CVE-2018-16227, CVE-2018-16228, CVE-2018-16229, CVE-2018-16230, CVE-2018-16300, CVE-2018-16301, CVE-2018-16451, CVE-2018-16452, CVE-2019-15166, CVE-2019-15167
Affected Software
17 affected componentsFixes available
Apple macOS Catalina<10.15.2
10.15.2
Apple Mojave
Apple High Sierra
tcpdump tcpdump<4.9.3
F5 Traffix Signaling Delivery Controller>=5.0.0<=5.1.0
Apple iOS and macOS<10.15.2
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Fedoraproject Fedora=29
Fedoraproject Fedora=30
Fedoraproject Fedora=31
openSUSE Leap=15.0
openSUSE Leap=15.1
redhat Enterprise Linux=7.0
redhat Enterprise Linux=8.0
debian/tcpdump
4.99.0-2+deb11u14.99.3-14.99.5-24.99.6-2
Remediation
Event History
Oct 3, 2019
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 4, 2025
Data Sourced
via Ubuntu·06:59 PM
RemedyDescriptionSeverityAffected Software
Feb 19, 2026
Data Sourced
via Launchpad·09:49 PM
Description
Mar 8, 2026
Data Sourced
via Debian·10:03 PM
DescriptionAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2019-8837
- CVE-2019-8853
- CVE-2019-8856
- CVE-2019-8848
- CVE-2019-8834
- CVE-2019-8842
- CVE-2019-8839
- CVE-2019-8830
- CVE-2019-8851
- CVE-2019-8833
- CVE-2019-8828
- CVE-2019-8838
- CVE-2019-8847
- CVE-2019-8852
- CVE-2019-15903
- CVE-2020-9782
- CVE-2012-1164
- CVE-2012-2668
- CVE-2013-4449
- CVE-2015-1545
- CVE-2019-13057
- CVE-2019-13565
- CVE-2019-8832
- CVE-2017-16808
- CVE-2018-10103
- CVE-2018-10105
- CVE-2018-14461
- CVE-2018-14462
- CVE-2018-14463
- CVE-2018-14464
- CVE-2018-14465
- CVE-2018-14466
- CVE-2018-14467
- CVE-2018-14468
- CVE-2018-14469
- CVE-2018-14470
- CVE-2018-14879
- CVE-2018-14880
- CVE-2018-14881
- CVE-2018-14882
- CVE-2018-16227
- CVE-2018-16228
- CVE-2018-16229
- CVE-2018-16230
- CVE-2018-16300
- CVE-2018-16301
- CVE-2018-16451
- CVE-2018-16452
- CVE-2019-15166
- CVE-2019-15167
- CVE-2019-15126
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-16229.
2
What is the severity level of CVE-2018-16229?
The severity level of CVE-2018-16229 is high.
3
Which software versions are affected by CVE-2018-16229?
macOS Catalina (10.15.2), Mojave, High Sierra, tcpdump 4.9.3 and libpcap version 1.9.1 are affected by CVE-2018-16229.
4
How can I fix CVE-2018-16229?
To fix CVE-2018-16229, update tcpdump to version 4.9.3 and libpcap to version 1.9.1.
5
Where can I find more information about CVE-2018-16229?
You can find more information about CVE-2018-16229 at the following references: [link1], [link2], [link3].