The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobilityoptprint().
[ { "signature_type": "Line", "deprecated": false, "source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00", "signature_version": "v1", "target": { "file": "print-mobility.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "30606244326844964408772431080234123871", "163582446176453215317447101711286740270", "281382138603057774483851287641459317686" ] }, "id": "CVE-2017-13023-37f5a33b" }, { "signature_type": "Function", "deprecated": false, "source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00", "signature_version": "v1", "target": { "function": "mobility_opt_print", "file": "print-mobility.c" }, "digest": { "function_hash": "307145264608762901129211491342496335894", "length": 1783.0 }, "id": "CVE-2017-13023-bac77a2a" } ]