CVE-2019-11490: Nmap Npcap
High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.
An issue was discovered in Npcap 0.992. Sending a malformed .pcap file with the loopback adapter using either pcap_sendqueue_queue() or pcap_sendqueue_transmit() results in kernel pool corruption. This could lead to arbitrary code executing inside the Windows kernel and allow escalation of privileges.
Affected products
- Nmap Npcap: version 0.992 only
Published 2019-04-24. Last modified 2026-06-17.