CVE-2018-15173: High severity libpcap vulnerability
Published Aug 8, 2018
·Updated
Nmap through 7.70, when the -sV option is used, allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted TCP-based service.
Affected Software
1 affected component
Nmap Nmap<=7.70
Event History
Aug 8, 2018
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-15173?
CVE-2018-15173 has a Medium severity rating due to its ability to cause denial of service by crashing the application.
2
What versions of Nmap are affected by CVE-2018-15173?
Nmap versions up to and including 7.70 are affected by CVE-2018-15173.
3
How do I fix CVE-2018-15173?
To fix CVE-2018-15173, upgrade Nmap to version 7.80 or later.
4
What does CVE-2018-15173 affect?
CVE-2018-15173 affects the Nmap network scanning tool's functionality when the -sV option is used.
5
Can CVE-2018-15173 be exploited remotely?
Yes, CVE-2018-15173 can be exploited remotely by attackers sending crafted TCP-based services.