The RADIUS parser in tcpdump before 4.9.2 has a buffer over-read in print-radius.c:printattrstring().
{ "vanir_signatures": [ { "source": "https://github.com/the-tcpdump-group/tcpdump/commit/1bc78d795cd5cad5525498658f414a11ea0a7e9c", "deprecated": false, "signature_version": "v1", "signature_type": "Function", "target": { "file": "print-radius.c", "function": "print_attr_string" }, "digest": { "length": 1265.0, "function_hash": "241141377411075039503482757685395680420" }, "id": "CVE-2017-13032-11fdddc0" }, { "source": "https://github.com/the-tcpdump-group/tcpdump/commit/1bc78d795cd5cad5525498658f414a11ea0a7e9c", "deprecated": false, "signature_version": "v1", "signature_type": "Line", "target": { "file": "print-radius.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "62975693570377776929219114318372177903", "68766361870239220007506086742862553421", "315460516360434777185257708922667502841", "62931070649044968405499314807497441611", "119691883633397954657737345867309404705", "245848018572636997491360716072619851839", "114100562274327671508475136304839539397", "125783435119362078598988645170451992619", "180662839983502723112949022024495058375", "148119653296506442568677262919226620566", "62931070649044968405499314807497441611", "239905365260399353792893094964596575042", "79754071405226913173249817634585381359", "2429725188559018156957338159783206236", "329638628441603352638975266602777845557", "231149691400414026326462795992421347951", "82689482812896030797791665016248933995", "106779593114395515877069468741528081320", "151693998821998223638207783333117424858", "284697388102345533407843947443014231533", "164457272495319341297276788547094604256", "245031799739031561170418282467795828691" ] }, "id": "CVE-2017-13032-88ffff81" } ] }