CVE-2026-18238

MEDIUM CVSS 3.1: 5.0 EPSS 0.18%
Updated Sep 08, 2026
The Tcpdump Group
Parameter Value
CVSS 5.0 (MEDIUM)
Type CWE-126, CWE-1288
Vendor The Tcpdump Group
Public PoC No

The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious server can send a crafted message and cause the client to treat up to 20 bytes of the client process memory beyond the end of the buffer as if it was a part of the captured packet.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
Low
Basic privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
Low
Partial data leak
Integrity
None
No data modification
Availability
None
No disruption

CVSS Vector v3.1

Weakness Type (CWE)

Vulnerable Products

the tcpdump group:libpcap