{"id":"CVE-2017-13015","details":"The EAP parser in tcpdump before 4.9.2 has a buffer over-read in print-eap.c:eap_print().","modified":"2026-04-16T06:17:25.826241471Z","published":"2017-09-14T06:29:01.793Z","related":["SUSE-SU-2017:2854-1","openSUSE-SU-2024:11425-1"],"references":[{"type":"WEB","url":"http://www.securitytracker.com/id/1039307"},{"type":"WEB","url":"https://support.apple.com/HT208221"},{"type":"ADVISORY","url":"http://www.debian.org/security/2017/dsa-3971"},{"type":"ADVISORY","url":"http://www.tcpdump.org/tcpdump-changes.txt"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHEA-2018:0705"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/201709-23"},{"type":"FIX","url":"https://github.com/the-tcpdump-group/tcpdump/commit/985122081165753c7442bd7824c473eb9ff56308"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/the-tcpdump-group/tcpdump","events":[{"introduced":"0"},{"last_affected":"993a67c8e648bc8b19881e29a60f41273cfbee7b"},{"fixed":"985122081165753c7442bd7824c473eb9ff56308"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"4.9.1"}]}}],"versions":["tcpdump-3.5.1","tcpdump-3.6.1","tcpdump-3.7.1","tcpdump-3.8-bp","tcpdump-4.5.0","tcpdump-4.6.0","tcpdump-4.6.0-bp","tcpdump-4.7.0-bp","tcpdump-4.9.0","tcpdump-4.9.0-bp","tcpdump-4.9.1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-13015.json","vanir_signatures":[{"source":"https://github.com/the-tcpdump-group/tcpdump/commit/985122081165753c7442bd7824c473eb9ff56308","deprecated":false,"signature_type":"Function","target":{"file":"print-eap.c","function":"eap_print"},"signature_version":"v1","id":"CVE-2017-13015-13c5f3fe","digest":{"length":2752,"function_hash":"229917211563473556555286754340191654944"}},{"source":"https://github.com/the-tcpdump-group/tcpdump/commit/985122081165753c7442bd7824c473eb9ff56308","signature_version":"v1","signature_type":"Line","id":"CVE-2017-13015-bb3da8b2","deprecated":false,"target":{"file":"print-eap.c"},"digest":{"line_hashes":["241923429549259126371615508607175521999","77178358949283612126107314317507827975","31574459219488112559221700013199668270","114815062300941020890684279868882539985","196866010707853222186539606806653198653","286498384385336070742746319291949402463","284054963785538386312072078848641279449","283433458599014533072448611222602292611","119666440509726458973201701749807631587","260397502505018696256399027103417978642","162479928273816722243924241066972836891","82531277252064368139470933120075739716","304144947731641649907506609356078464349","154339881498558912293015327602647038952","72788610811161086794793827422857292360","58256872013475859196106539920553426600","64979846920346950475109907769688769306","301180272875595621991809477783719650242","126479840459415204687521111253806530192","49779559228341232183407465396231134091","89002552736773604454299052961583943090","254060631960363696781511416458237905269","76317898158663867978046976712425812671","132519847128765339990411042442244521746","47330822786579984230274451538332753445","80738096040420921627487538192961073644","72386596017013566716762350825327422508","240980053719688153024545280792637776847","20699128060515568693893618586143953634","64833286097148706430882514359746138125","290474755677102691681702962295835505480","132519847128765339990411042442244521746","47330822786579984230274451538332753445","80738096040420921627487538192961073644","72386596017013566716762350825327422508","296883120083991092728398129397964071973","249102699949493647063070656354050782237","253895969788465974329766893328703244972","171671264241800391523029113796985808192"],"threshold":0.9}}],"vanir_signatures_modified":"2026-04-11T03:56:55Z"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}