CVE-2026-18313

NameCVE-2026-18313
Descriptionrpcapd can allocate up to 65536 bytes per each RPCAP_MSG_UPDATEFILTER_REQ or RPCAP_MSG_STARTCAP_REQ message received from the client, but it never frees the memory, so it leaks memory even under normal use. A malicious client can cause the server to leak memory substantially faster.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1146825

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libpcap (PTS)bookworm1.10.3-1vulnerable
trixie1.10.5-2vulnerable
forky, sid1.10.7-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libpcapsource(unstable)1.10.7-1unimportant1146825

Notes

Fixed by: https://github.com/the-tcpdump-group/libpcap/commit/f9775af1a0ec76db60c7213241e6b48f1be10ac7 (libpcap-1.10.7)
https://www.openwall.com/lists/oss-security/2026/09/09/2
Debian binary packages not built with experimental --enable-remote

Search for package or bug name: Reporting problems