nfdump 1.6.17 and earlier is affected by an integer overflow in the function Processipfixtemplate_withdraw in ipfix.c that can be abused in order to crash the process remotely (denial of service).
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-14459.json"