The IEEE 802.11 parser in tcpdump before 4.9.2 has a buffer over-read in print-80211.c:parseelements().
{ "vanir_signatures": [ { "digest": { "function_hash": "290251754563842359428981773949044366101", "length": 3468.0 }, "id": "CVE-2017-12987-11491de0", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/99798bd9a41bd3d03fdc1e949810a38967f20ed3", "signature_type": "Function", "signature_version": "v1", "target": { "file": "print-802_11.c", "function": "parse_elements" }, "deprecated": false }, { "digest": { "threshold": 0.9, "line_hashes": [ "335911950420303801580116141855341621613", "98206576430104946366182579772501237521", "323215630476707087803097209446459753404", "61012848075707222987193073642102327469", "172812543156579252701213616063760348004" ] }, "id": "CVE-2017-12987-b52f26bd", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/99798bd9a41bd3d03fdc1e949810a38967f20ed3", "signature_type": "Line", "signature_version": "v1", "target": { "file": "print-802_11.c" }, "deprecated": false } ] }