DEBIAN-CVE-2025-11961

Source
https://security-tracker.debian.org/tracker/CVE-2025-11961
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-11961.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2025-11961
Upstream
  • CVE-2025-11961
Published
2025-12-31T01:15:54.500Z
Modified
2025-12-31T11:14:55.167789Z
Severity
  • 1.9 (Low) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N CVSS Calculator
Summary
[none]
Details

pcapetheraton() is an auxiliary function in libpcap, it takes a string argument and returns a fixed-size allocated buffer. The string argument must be a well-formed MAC-48 address in one of the supported formats, but this requirement has been poorly documented. If an application calls the function with an argument that deviates from the expected format, the function can read data beyond the end of the provided string and write data beyond the end of the allocated buffer.

References

Affected packages

Debian:11 / libpcap

Package

Name
libpcap
Purl
pkg:deb/debian/libpcap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10.0-2
1.10.1-1
1.10.1-2
1.10.1-3
1.10.1-4~bpo11+1
1.10.1-4
1.10.2-1~bpo11+1
1.10.2-1
1.10.3-1~bpo11+1
1.10.3-1
1.10.4-1
1.10.4-2
1.10.4-3
1.10.4-4
1.10.4-4.1~exp1
1.10.4-4.1
1.10.4-5
1.10.4-5+hurd.1
1.10.5-1
1.10.5-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / libpcap

Package

Name
libpcap
Purl
pkg:deb/debian/libpcap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10.3-1
1.10.4-1
1.10.4-2
1.10.4-3
1.10.4-4
1.10.4-4.1~exp1
1.10.4-4.1
1.10.4-5
1.10.4-5+hurd.1
1.10.5-1
1.10.5-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / libpcap

Package

Name
libpcap
Purl
pkg:deb/debian/libpcap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10.5-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / libpcap

Package

Name
libpcap
Purl
pkg:deb/debian/libpcap?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.10.5-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}