sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.
[
{
"digest": {
"length": 4423.0,
"function_hash": "273265343795771163597337149327247680660"
},
"source": "https://github.com/the-tcpdump-group/libpcap/commit/87d6bef033062f969e70fa40c43dfd945d5a20ab",
"signature_type": "Function",
"deprecated": false,
"id": "CVE-2019-15165-21c491be",
"target": {
"function": "pcap_ng_check_header",
"file": "sf-pcapng.c"
},
"signature_version": "v1"
},
{
"digest": {
"line_hashes": [
"33569344490841975826475357806513969975",
"176936773931677560023105738202080746077",
"82765497582357681474057124500102529886",
"47509769026809880545712837698025898234",
"114674106025352316584238681736756524425",
"225247956292447568972137037164393642926",
"44311349298669397529820140779301570018",
"265875743096863861146943255088634824721",
"248459255112037681823287854975290900003",
"203344547433097007151709177406498985917"
],
"threshold": 0.9
},
"source": "https://github.com/the-tcpdump-group/libpcap/commit/a5a36d9e82dde7265e38fe1f87b7f11c461c29f6",
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2019-15165-3ab0d65b",
"target": {
"file": "sf-pcapng.c"
},
"signature_version": "v1"
},
{
"digest": {
"line_hashes": [
"33569344490841975826475357806513969975",
"176936773931677560023105738202080746077",
"82765497582357681474057124500102529886",
"3066346285081142572972898439175944496",
"207054172879942558775436565344398076245",
"202827879285952739181376259266032820217",
"182934794976808028147140004550245606147",
"295535185644563427780949767249897619274",
"53843891289086496234714335513567034141",
"213234844142231421134160054084745701111",
"204429355472345025953888871580766989717",
"146318862421346535880160986171396007463",
"38921675439697220774488857836170998837",
"180683718088558781989640523601469022063",
"339270694605418171184907104566787178320",
"279939791553444257426719115981711938391",
"149326201062023264910362971715879161097",
"187870402788100306015019375980595948660",
"334930619449404498430276733104830567186",
"197668102473191542278678260281096560269",
"34358175535383540312287891631978702264",
"49448256902558009889600050226351044896",
"156892085676711788323859943207119517089",
"16052876937386000751523253874141047924",
"260393753005259561847138914723125937048"
],
"threshold": 0.9
},
"source": "https://github.com/the-tcpdump-group/libpcap/commit/87d6bef033062f969e70fa40c43dfd945d5a20ab",
"signature_type": "Line",
"deprecated": false,
"id": "CVE-2019-15165-b4790a52",
"target": {
"file": "sf-pcapng.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 512.0,
"function_hash": "302943058939901861236031757384260746647"
},
"source": "https://github.com/the-tcpdump-group/libpcap/commit/87d6bef033062f969e70fa40c43dfd945d5a20ab",
"signature_type": "Function",
"deprecated": false,
"id": "CVE-2019-15165-ed60c6c1",
"target": {
"function": "read_bytes",
"file": "sf-pcapng.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 4330.0,
"function_hash": "74418383905190548705852926004747696182"
},
"source": "https://github.com/the-tcpdump-group/libpcap/commit/a5a36d9e82dde7265e38fe1f87b7f11c461c29f6",
"signature_type": "Function",
"deprecated": false,
"id": "CVE-2019-15165-ff7b19b7",
"target": {
"function": "pcap_ng_check_header",
"file": "sf-pcapng.c"
},
"signature_version": "v1"
}
]