CVE-2017-5342: Tcpdump
Critical severity, CVSS 9.8. EPSS: 5.5% chance of exploitation in the next 30 days.
In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in print-ether.c:ether_print().
Affected products
- Tcpdump Tcpdump: up to and including 4.8.1
Published 2017-01-28. Last modified 2026-06-17.