๐Ÿ” CVE Alert

CVE-2026-48682

MEDIUM 5.9
CVSS Score
5.9
EPSS Score
0.0%
EPSS Percentile
4th

FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the IPv4 packet parser. In src/simple_packet_parser_ng.cpp, after validating that the packet contains at least sizeof(ipv4_header_t) bytes (20 bytes), the code advances the local_pointer by '4 * ipv4_header->get_ihl()' (line 164) without validating that (a) IHL >= 5 (the minimum valid value per RFC 791), or (b) 4 * IHL bytes are actually available in the packet. The IHL field is 4 bits, allowing values 0-15, so the advance can be 0-60 bytes. An IHL value of 15 with only 20 bytes validated causes a 40-byte over-read. An IHL of 0-4 causes the pointer to not advance past the IP header, resulting in the TCP/UDP header being parsed from IP header data (type confusion). This vulnerability is reachable via any packet capture interface.

Vendor n/a
Product n/a
Published Jun 2, 2026
Last Updated Jun 4, 2026
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new medium vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/pavel-odintsov/fastnetmon github.com: https://github.com/pavel-odintsov/fastnetmon/blob/master/src/simple_packet_parser_ng.cpp lorikeetsecurity.com: https://lorikeetsecurity.com/blog/fastnetmon-cve-2026-48682-ipv4-parser-oob