The NFS parser in tcpdump before 4.9.2 has a buffer over-read in print-nfs.c:xidmapenter().
[
{
"id": "CVE-2017-13005-0b9c9135",
"signature_version": "v1",
"deprecated": false,
"target": {
"file": "print-nfs.c"
},
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b45a9a167ca6a3ef2752ae9d48d56ac14b001bfd",
"digest": {
"line_hashes": [
"301951966612775867271078823714024630360",
"3583214130585030777184683369713871729",
"190686089072627026775665450105162832188",
"48858980126999016438726948583583200971",
"130726092154942204758075786231594916009"
],
"threshold": 0.9
},
"signature_type": "Line"
},
{
"id": "CVE-2017-13005-8bf61968",
"signature_version": "v1",
"deprecated": false,
"target": {
"file": "print-nfs.c",
"function": "xid_map_enter"
},
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b45a9a167ca6a3ef2752ae9d48d56ac14b001bfd",
"digest": {
"length": 1069.0,
"function_hash": "154137411687123735639607028080322982382"
},
"signature_type": "Function"
}
]