CVE-2017-13021 describes a critical buffer over-read vulnerability in the ICMPv6 parser of tcpdump versions prior to 4.9.2, specifically within the icmp6_print() function. With a CVSS score of 9.8 (Critical), this flaw allows an unauthenticated attacker to remotely execute arbitrary code or cause a denial of service with low attack complexity, leading to high impacts on confidentiality, integrity, and availability. While no active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB) has been identified, the vulnerability has received some community attention and media coverage, including a mention in a Hackernews article about tcpdump fixes.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.9.1CPE matchmatch criteria | cpe:2.3:a:tcpdump:tcpdump:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.