openwrt/package/network/utils/tcpdump/patches
Hauke Mehrtens e92a4e5458 tcpdump: Fix CVE-2018-16301
This fixes the following security problem:
The command-line argument parser in tcpdump before 4.99.0 has a buffer
overflow in tcpdump.c:read_infile(). To trigger this vulnerability the
attacker needs to create a 4GB file on the local filesystem and to
specify the file name as the value of the -F command-line argument of
tcpdump.

Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
(cherry picked from commit 8f5875c4e2)
(cherry picked from commit 59e7ae8d65)
2022-02-13 08:55:02 +01:00
..
001-remove_pcap_debug.patch tcpdump: update to 4.9.3 2019-10-19 14:30:05 +02:00
002-remove_static_libpcap_check.patch tcpdump: update to 4.9.3 2019-10-19 14:30:05 +02:00
100-tcpdump_mini.patch tcpdump: update to 4.9.3 2019-10-19 14:30:05 +02:00
101-CVE-2020-8037.patch tcpdump: patch CVE-2020-8037 2020-11-25 06:02:08 +01:00
102-CVE-2018-16301.patch tcpdump: Fix CVE-2018-16301 2022-02-13 08:55:02 +01:00