216.73.217.172

CVE-2025-11961

· Published 31/12/2025 01:15 · Modified 31/12/2025 20:42

Labels: CVE-2025-11961 2025-12-31CVE-2025-11961CWE-122[email protected]

Essential information

Published
31/12/2025 01:15
Modified
31/12/2025 20:42
Author
Creator
CVSS
1.9 LOW (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N

CVSS metrics

Description

pcap_ether_aton() is an auxiliary function in libpcap, it takes a string argument and returns a fixed-size allocated buffer. The string argument must be a well-formed MAC-48 address in one of the supported formats, but this requirement has been poorly documented. If an application calls the function with an argument that deviates from the expected format, the function can read data beyond the end of the provided string and write data beyond the end of the allocated buffer.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
tcpdump / libpcap cpe:2.3:a:tcpdump:libpcap:*:*:*:*:*:*:*:*

References