The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6nodeinfoprint().
{ "vanir_signatures": [ { "id": "CVE-2017-13041-37662088", "signature_type": "Line", "target": { "file": "print-icmp6.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "154715820295246954791861117969203108533", "106132156352919819389670240036665897416", "267727671108298250848133287720386922363", "250627204475544040185647351154545316278", "245051279364518687830749668182146207619", "331158675970270713499175000882578990984", "59076273029125381514893714201992341807" ], "threshold": 0.9 }, "deprecated": false, "source": "https://github.com/the-tcpdump-group/tcpdump/commit/f4b9e24c7384d882a7f434cc7413925bf871d63e" }, { "id": "CVE-2017-13041-f04521b6", "signature_type": "Function", "target": { "file": "print-icmp6.c", "function": "icmp6_nodeinfo_print" }, "signature_version": "v1", "digest": { "length": 5913.0, "function_hash": "79659003536932730230767791178207775535" }, "deprecated": false, "source": "https://github.com/the-tcpdump-group/tcpdump/commit/f4b9e24c7384d882a7f434cc7413925bf871d63e" } ] }