The DHCPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-dhcp6.c:dhcp6opt_print().
{ "vanir_signatures": [ { "target": { "file": "print-dhcp6.c" }, "id": "CVE-2017-13017-8cd970e1", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/11b426ee05eb62ed103218526f1fa616851c43ce", "digest": { "line_hashes": [ "241785703966375424625464816756373875321", "260171420687082854402652062305870914269", "4267060419058805057624728670807481844", "144918831268529722871293797921208930653" ], "threshold": 0.9 }, "signature_version": "v1", "signature_type": "Line", "deprecated": false }, { "target": { "function": "dhcp6opt_print", "file": "print-dhcp6.c" }, "id": "CVE-2017-13017-ba8bdea4", "source": "https://github.com/the-tcpdump-group/tcpdump/commit/11b426ee05eb62ed103218526f1fa616851c43ce", "digest": { "length": 11027.0, "function_hash": "333557242971206384915371355876566620229" }, "signature_version": "v1", "signature_type": "Function", "deprecated": false } ] }