CVE DATABASE / CVE-2007-3798
CVE-2007-3798
CVSS 9.8 · CRITICAL
Summary
Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value.
CVSS 3.1 breakdown
| Base score | 9.8 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| Attack vector | NETWORK |
| Attack complexity | LOW |
| Privileges required | NONE |
| User interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality | HIGH |
| Integrity | HIGH |
| Availability | HIGH |
Weakness type (CWE)
Affected products
Tcpdump tcpdumpCanonical ubuntu linuxDebian debian linuxSlackware slackwareFreebsd freebsdApple mac os xApple mac os x server
Check this CVE live
Use our free CVE Lookup tool for the latest NVD record, or browse the full CISA KEV catalog.
References
- http://bugs.gentoo.org/show_bug.cgi?id=184815
- http://cvs.tcpdump.org/cgi-bin/cvsweb/tcpdump/print-bgp.c?r1=1.91.2.11&r2=1.91.2.12
- http://docs.info.apple.com/article.html?artnum=307179
- http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html
- http://secunia.com/advisories/26135
- http://secunia.com/advisories/26168
- http://secunia.com/advisories/26223
- http://secunia.com/advisories/26231
- http://secunia.com/advisories/26263
- http://secunia.com/advisories/26266
- http://secunia.com/advisories/26286
- http://secunia.com/advisories/26395
- http://secunia.com/advisories/26404
- http://secunia.com/advisories/26521
- http://secunia.com/advisories/27580
Data: NIST NVD. NVD last modified 2026-04-23. Always verify against the vendor advisory before acting.