VYPR
Critical severity9.1OSV Advisory· Published Aug 5, 2018· Updated Jun 17, 2026

CVE-2018-14938

CVE-2018-14938

Description

An issue was discovered in wifipcap/wifipcap.cpp in TCPFLOW through 1.5.0-alpha. There is an integer overflow in the function handle_prism during caplen processing. If the caplen is less than 144, one can cause an integer overflow in the function handle_80211, which will result in an out-of-bounds read and may allow access to sensitive memory (or a denial of service).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Range: push, tcpflow-1.2.5, tcpflow-1.2.7, …
  • cpe:2.3:a:digitalcorpora:tcpflow:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:digitalcorpora:tcpflow:*:*:*:*:*:*:*:*range: <=1.4.5
    • cpe:2.3:a:digitalcorpora:tcpflow:1.5.0:alpha:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*+ 2 more
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.