CVE-2017-13044 describes a critical buffer over-read vulnerability in the HNCP parser of tcpdump versions prior to 4.9.2, specifically within the dhcpv4_print() function. This flaw carries a CVSS v3.0 score of 9.8 (Critical), indicating it is remotely exploitable with low attack complexity, requiring no user interaction, and can lead to complete compromise of confidentiality, integrity, and availability. Despite its high severity and a small amount of community discussion and media coverage, there is currently no public exploit code available in Metasploit, Nuclei, or ExploitDB, and it is not listed on CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 4.9.1CPE matchmatch criteria | cpe:2.3:a:tcpdump:tcpdump:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.