๐Ÿ” CVE Alert

CVE-2026-31912

MEDIUM 5.5

OOBR in libpcap before 1.10.7

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading the OS process memory in the 32GiB around the buffer on 64-bit architectures and in the entire address space on 32-bit architectures.

CWE CWE-1285 CWE-823 CWE-125
Vendor the tcpdump group
Product libpcap
Published Sep 5, 2026
Last Updated Sep 8, 2026
Stay Ahead of the Next One

Get instant alerts for the tcpdump group libpcap

Be the first to know when new medium vulnerabilities affecting the tcpdump group libpcap are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

The Tcpdump Group / libpcap
0 < 1.10.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/the-tcpdump-group/libpcap/commit/d3f358d3cffbe1ecb94d5284b3e81f052a0adcb9

Credits

Denis Ovsienko