CVE-2026-18238
OOBR in rpcap client in libpcap before 1.10.7
CVSS Score
5.0
EPSS Score
0.0%
EPSS Percentile
0th
The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious server can send a crafted message and cause the client to treat up to 20 bytes of the client process memory beyond the end of the buffer as if it was a part of the captured packet.
| CWE | CWE-1288 CWE-126 |
| Vendor | the tcpdump group |
| Product | libpcap |
| Published | Sep 5, 2026 |
| Last Updated | Sep 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for the tcpdump group libpcap
Be the first to know when new medium vulnerabilities affecting the tcpdump group libpcap are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
None
Availability
None
Affected Versions
The Tcpdump Group / libpcap
1.8.x 1.9.x 1.10.x < 1.10.7