CVE-2025-11961 is a low-severity vulnerability in the libpcap library's pcap_ether_aton() function. This flaw allows an application to read or write data beyond allocated buffer boundaries if it provides a malformed MAC-48 address string, though no specific affected products are listed. The attack requires high privileges and high attack complexity, with a minimal impact of only a potential integrity loss. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| The Tcpdump Group | Libpcap | >= 0, < 1.10.6CNA affecteddefault unaffected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.