vulnerability

Amazon Linux AMI 2: CVE-2019-15167: Security patch for tcpdump (ALAS-2023-2119)

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:C)
Published
Aug 27, 2022
Added
Jul 21, 2023
Modified
Jan 28, 2025

Description

The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.

Solution(s)

amazon-linux-ami-2-upgrade-tcpdumpamazon-linux-ami-2-upgrade-tcpdump-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.