CVE-2019-14459: Debian Linux
High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.
nfdump 1.6.17 and earlier is affected by an integer overflow in the function Process_ipfix_template_withdraw in ipfix.c that can be abused in order to crash the process remotely (denial of service).
Affected products
- Debian Debian Linux: version 9.0 only
- Fedoraproject Fedora: version 29 only; version 30 only
- Nfdump Project Nfdump: up to and including 1.6.17
Published 2019-07-31. Last modified 2026-06-17.