CVE-2017-5205

Source
https://cve.org/CVERecord?id=CVE-2017-5205
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5205.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2017-5205
Downstream
Related
Published
2017-01-28T01:59:01.157Z
Modified
2026-04-11T18:29:58.093160Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2eprint().

Database specific
{
    "unresolved_ranges": [
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "8.0"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "9.0"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.0"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.0"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.4"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.6"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.4"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.5"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.6"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.6"
                }
            ]
        },
        {
            "source": "CPE_FIELD",
            "cpe": "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*",
            "extracted_events": [
                {
                    "last_affected": "7.0"
                }
            ]
        }
    ]
}
References

Affected packages

Git / github.com/the-tcpdump-group/tcpdump

Affected ranges

Type
GIT
Repo
https://github.com/the-tcpdump-group/tcpdump
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "source": "CPE_FIELD",
    "cpe": "cpe:2.3:a:tcpdump:tcpdump:*:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "fixed": "4.9.0"
        }
    ]
}

Affected versions

tcpdump-3.*
tcpdump-3.5.1
tcpdump-3.6.1
tcpdump-3.7.1
tcpdump-3.8-bp
tcpdump-4.*
tcpdump-4.5.0
tcpdump-4.6.0
tcpdump-4.6.0-bp
tcpdump-4.7.0-bp

Database specific

vanir_signatures_modified
"2026-04-11T18:29:58Z"
source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5205.json"
vanir_signatures
[
    {
        "target": {
            "function": "ethertype_print",
            "file": "print-ether.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "length": 2587.0,
            "function_hash": "31486734027380005103230538229483283558"
        },
        "id": "CVE-2017-5205-2ba3af18",
        "source": "https://github.com/the-tcpdump-group/tcpdump/commit/cae54f4d943f163541dc7a90f7f5b432859955e4",
        "signature_type": "Function"
    },
    {
        "target": {
            "file": "print-ether.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "289962869142539033919548699903735971895",
                "321187814844074319440356878954916582618",
                "96278794428690994985504688327165122951",
                "334924286569736786368128921431302191310"
            ]
        },
        "id": "CVE-2017-5205-4cb9a0ba",
        "source": "https://github.com/the-tcpdump-group/tcpdump/commit/cae54f4d943f163541dc7a90f7f5b432859955e4",
        "signature_type": "Line"
    },
    {
        "target": {
            "file": "netdissect.h"
        },
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "208063356587562841728207749352312617633",
                "94369104648756919419866969560637031504",
                "158530789875360221930177539868533298858",
                "253446335086249471187651377860820435235"
            ]
        },
        "id": "CVE-2017-5205-7041f422",
        "source": "https://github.com/the-tcpdump-group/tcpdump/commit/cae54f4d943f163541dc7a90f7f5b432859955e4",
        "signature_type": "Line"
    },
    {
        "target": {
            "file": "print-medsa.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "114946376029719487727067709523051033051",
                "227334674829184980067944298911146947115",
                "210376600301944043403573276686938546462",
                "178848560193805662289114191287577780030",
                "275264082656881882204531968707571331121",
                "125472290036734832543852872169378264835",
                "173676936645231007527992549401569557625",
                "288479365740565370114994721279060580351",
                "109609806529605983880753254914716894236",
                "142606612004130782709107352262636392155",
                "29719618684433844042017610474921887645",
                "226023839603229667093098466115918767045",
                "72712425789080240366374511061789058613",
                "151346982239502861005805789530967240933",
                "336759652068049672908093915736280119824",
                "206371089863004604069910662208531735471",
                "223713852872945044680520491862189426699",
                "190210319895479423224763214308807174099",
                "79472329640795828550526242935079441795",
                "337237102835808452012520121951202183188",
                "326954748457766422394896389595937310919",
                "164383034353028065510931221836837725166",
                "232747210196469577238906567634162708264",
                "100592845038565327953900512326475285722",
                "109264432762985498185441714222958983220"
            ]
        },
        "id": "CVE-2017-5205-90c9aa2a",
        "source": "https://github.com/the-tcpdump-group/tcpdump/commit/cae54f4d943f163541dc7a90f7f5b432859955e4",
        "signature_type": "Line"
    },
    {
        "target": {
            "function": "medsa_print",
            "file": "print-medsa.c"
        },
        "signature_version": "v1",
        "deprecated": false,
        "digest": {
            "length": 1324.0,
            "function_hash": "285468102648205064789132629197542510522"
        },
        "id": "CVE-2017-5205-e7c0e582",
        "source": "https://github.com/the-tcpdump-group/tcpdump/commit/cae54f4d943f163541dc7a90f7f5b432859955e4",
        "signature_type": "Function"
    }
]