The NFS parser in tcpdump before 4.9.2 has a buffer over-read in print-nfs.c:xidmapenter().
[
{
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b45a9a167ca6a3ef2752ae9d48d56ac14b001bfd",
"signature_version": "v1",
"digest": {
"line_hashes": [
"301951966612775867271078823714024630360",
"3583214130585030777184683369713871729",
"190686089072627026775665450105162832188",
"48858980126999016438726948583583200971",
"130726092154942204758075786231594916009"
],
"threshold": 0.9
},
"target": {
"file": "print-nfs.c"
},
"id": "CVE-2017-13005-0b9c9135",
"deprecated": false,
"signature_type": "Line"
},
{
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b45a9a167ca6a3ef2752ae9d48d56ac14b001bfd",
"signature_version": "v1",
"digest": {
"function_hash": "154137411687123735639607028080322982382",
"length": 1069.0
},
"target": {
"function": "xid_map_enter",
"file": "print-nfs.c"
},
"id": "CVE-2017-13005-8bf61968",
"deprecated": false,
"signature_type": "Function"
}
]