Candidate: CVE-2011-1935 PublicDate: 2017-10-20 18:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1935 http://thread.gmane.org/gmane.network.tcpdump.devel/5018 Description: pcap-linux.c in libpcap 1.1.1 before commit ea9432fabdf4b33cbc76d9437200e028f1c47c93 when snaplen is set may truncate packets, which might allow remote attackers to send arbitrary data while avoiding detection via crafted packets. Ubuntu-Description: Notes: jdstrand> results in less data being captured than expected Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=623868 http://article.gmane.org/gmane.network.tcpdump.devel/4968 Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_libpcap: other: http://thread.gmane.org/gmane.network.tcpdump.devel/5018 upstream: ea9432fabdf4b33cbc76d9437200e028f1c47c93 upstream_libpcap: released (1.1.1-4) hardy_libpcap: ignored (reached end-of-life) lucid_libpcap: ignored (reached end-of-life) maverick_libpcap: ignored (reached end-of-life) natty_libpcap: ignored (reached end-of-life) oneiric_libpcap: not-affected (1.1.1-8) precise_libpcap: not-affected quantal_libpcap: not-affected raring_libpcap: not-affected saucy_libpcap: not-affected trusty_libpcap: not-affected trusty/esm_libpcap: not-affected utopic_libpcap: not-affected vivid_libpcap: not-affected devel_libpcap: not-affected