Winpcap is a niche packet-capture library for Windows that enables network analysis and monitoring tools to interface with network interfaces at a low level, presenting a narrow but specialized role in the security and network-administration software ecosystem. The observed vulnerabilities center on array-indexing validation issues within the capture mechanism, reflecting the memory-safety challenges inherent to a C-based packet-processing library. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Winpcap over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3681MEDIUM The IOCTL 9031 (BIOCGSTATS) handler in the NPF.SYS device driver in WinPcap before 4.0.1 allows local users to overwrite memory and execute arbitrary code via malformed Interrupt R | Jul 11, 2007 | 6.6 | 26 | NO | YES |
CVE-2007-5756MEDIUM Multiple array index errors in the bpf_filter_init function in NPF.SYS in WinPcap before 4.0.2, when run in monitor mode (aka Table Management Extensions or TME), and as used in Wi | Nov 14, 2007 | 6.9 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Winpcap.
Media articles that mention a CVE ID that affects a product developed by Winpcap — matched by CVE ID, not by vendor name.