The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.
{ "vanir_signatures": [ { "signature_version": "v1", "signature_type": "Function", "target": { "file": "print-vrrp.c", "function": "vrrp_print" }, "deprecated": false, "digest": { "length": 2202.0, "function_hash": "322413045990685343328152067927880986684" }, "id": "CVE-2019-15167-0719d6c8", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/a152aebfd1114376ba266ed30416be596ef9d806" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "print-vrrp.c" }, "deprecated": false, "digest": { "line_hashes": [ "301608964099896128100076242908122226412", "157223937579075612038604932610297755980", "50539684197470920255455352813217180012", "219103305016733094090843859040627649185", "84674825088426590416966394706599370069", "42266030285010265686591822012216453533" ], "threshold": 0.9 }, "id": "CVE-2019-15167-f3ad5b10", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/a152aebfd1114376ba266ed30416be596ef9d806" } ] }