The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobilityoptprint().
[
{
"id": "CVE-2017-13023-37f5a33b",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "print-mobility.c"
},
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00",
"signature_type": "Line",
"digest": {
"line_hashes": [
"30606244326844964408772431080234123871",
"163582446176453215317447101711286740270",
"281382138603057774483851287641459317686"
],
"threshold": 0.9
}
},
{
"id": "CVE-2017-13023-bac77a2a",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "print-mobility.c",
"function": "mobility_opt_print"
},
"source": "https://github.com/the-tcpdump-group/tcpdump/commit/b8e559afaeb8fe0604a1f8e3ad4dc1445de07a00",
"signature_type": "Function",
"digest": {
"length": 1783.0,
"function_hash": "307145264608762901129211491342496335894"
}
}
]