CVE-2019-15164: SSRF
libpcap. Multiple issues were addressed by updating to libpcap version 1.9.1
Other sources
rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.
Credit
Affected Software
Remediation
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-15164.
What is the severity of CVE-2019-15164?
CVE-2019-15164 has a severity rating of medium.
What is the affected software for CVE-2019-15164?
The affected software for CVE-2019-15164 includes libpcap version 1.9.1, Tcpdump Libpcap, Apple watchOS up to version 6.1.1, Apple tvOS up to version 13.3, Apple iOS up to version 13.3, and Apple iPadOS up to version 13.3.
What is the description of CVE-2019-15164?
CVE-2019-15164 is a vulnerability in libpcap before version 1.9.1 that allows SSRF (Server-Side Request Forgery) due to a URL provided as a capture source.
How can I fix CVE-2019-15164?
You can fix CVE-2019-15164 by updating to libpcap version 1.9.1.