[CLSA-2026:1777458706] tcpdump: Fix of 6 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-29 10:31:50 UTC
Description:
- CVE-2018-16229: dccp buffer over-read in timestamp options - CVE-2018-14466: fix rx parser over-read in serviceId - CVE-2018-16452: cap smb_fdata recursion to prevent stack exhaustion - CVE-2018-16451: add missing bounds checks in smb print_trans() - CVE-2018-16228: already mitigated upstream by Patch0015 (filename references the unrelated CVE-2018-19519 but its body is the HNCP print_prefix fix)
Updated packages:
  • tcpdump-4.9.2-4.amzn2.1.0.1.tuxcare.els4.x86_64.rpm
    sha:8600ef26469593302e8f2674eca9588e911c58e57f7d2bbfaba9036ba008e6ea
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.