Data Processing (IBB) Program Statistics


View program

13 total issues disclosed

$5,000 total paid publicly

Most disclosed (8 disclosures) — Buffer Over-read



Disclosed Reports


Report Title Vulnerability Type Disclosed By Severity Disclosed on
Several protocol parsers in before 4.9.2 could cause a buffer overflow in util-print.c:bittok2str_internal() Classic Buffer Overflow bags Critical 2021-08-22
The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print() Buffer Over-read bags High 2021-08-22
CVE-2017-13050: The RPKI-Router parser in tcpdump before 4.9.2 has a buffer over-read in print-rpki-rtr.c:rpki_rtr_pdu_print() Buffer Over-read bags High 2021-08-22
CVE-2017-13019: The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print() Buffer Over-read bags High 2021-08-22
CVE-2020-10938-buffer overflow/out-of-bounds write in compress.c:HuffmanDecodeImage() Heap Overflow nathaniellives Critical 2021-08-22
tcpdump before 4.9.3 has a heap-based buffer over-read related to aoe_print in print-aoe.c and lookup_emem in addrtoname.c Buffer Over-read dotsecurity Medium 2021-07-23
CVE-2017-13041 The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_nodeinfo_print(). Buffer Over-read karas High 2021-07-09
Heap buffer overflow vulnerability while processing a malformed TIFF file. Heap Overflow hardik05 High 2021-07-09
CVE-2017-13040 The MPTCP parser in tcpdump before 4.9.2 has a buffer over-read in print-mptcp.c, several functions. Buffer Over-read karas High 2021-07-09
Out of bounds read in libcurl's IMAP FETCH response parser Buffer Over-read geeknik No rating 2018-05-16
CVE-2017-1000101: cURL: URL globbing out of bounds read Buffer Over-read geeknik Medium 2018-05-16
heap-buffer-overflow (buffer read overrun) in curl: ourWriteOut() src/tool_writeout.c:115 Memory Corruption - Generic geeknik High 2018-05-16
cURL / libcURL - CVE-2016-8624 invalid URL parsing with '#' Server-Side Request Forgery (SSRF) fms Medium 2018-01-11