The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobilityoptprint().
[
{
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"30606244326844964408772431080234123871",
"163582446176453215317447101711286740270",
"281382138603057774483851287641459317686"
]
},
"target": {
"file": "print-mobility.c"
},
"id": "CVE-2017-13023-37f5a33b",
"signature_version": "v1",
"signature_type": "Line"
},
{
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00",
"deprecated": false,
"digest": {
"function_hash": "307145264608762901129211491342496335894",
"length": 1783.0
},
"target": {
"function": "mobility_opt_print",
"file": "print-mobility.c"
},
"id": "CVE-2017-13023-bac77a2a",
"signature_version": "v1",
"signature_type": "Function"
}
]