Description
A vulnerability was found in seladb PcapPlusPlus 25.05. The affected element is the function parse_by_block_type of the file light_pcapng.c of the component LightPcapNg Parser. Performing a manipulation of the argument captured_packet_length results in heap-based buffer overflow. It is possible to initiate the attack remotely. The attack's complexity is rated as high. The exploitability is described as difficult. The exploit has been made public and could be used.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 29 Jun 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in seladb PcapPlusPlus 25.05. The affected element is the function parse_by_block_type of the file light_pcapng.c of the component LightPcapNg Parser. Performing a manipulation of the argument captured_packet_length results in heap-based buffer overflow. It is possible to initiate the attack remotely. The attack's complexity is rated as high. The exploitability is described as difficult. The exploit has been made public and could be used. | |
| Title | seladb PcapPlusPlus LightPcapNg light_pcapng.c parse_by_block_type heap-based overflow | |
| First Time appeared |
Seladb
Seladb pcapplusplus |
|
| Weaknesses | CWE-119 CWE-122 |
|
| CPEs | cpe:2.3:a:seladb:pcapplusplus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Seladb
Seladb pcapplusplus |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-29T16:00:11.058Z
Reserved: 2026-06-29T04:25:24.076Z
Link: CVE-2026-13587
No data.
No data.
No data.
OpenCVE Enrichment
No data.