The ISAKMP parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c:isakmp_rfc3948_print().
| Software | From | Fixed in |
|---|---|---|
| tcpdump / tcpdump | - | 4.9.1.x |
| redhat / enterprise_linux_desktop | 7.0 | 7.0.x |
| redhat / enterprise_linux_server | 7.0 | 7.0.x |
| debian / debian_linux | 9.0 | 9.0.x |
| debian / debian_linux | 10.0 | 10.0.x |
| redhat / enterprise_linux_server_aus | 7.6 | 7.6.x |
| redhat / enterprise_linux_server_aus | 7.7 | 7.7.x |