Memory Access Vulnerability in libpcap’s BPF Interpreter
CVE-2026-0799
8.7HIGH
Key Information:
- Vendor
The Tcpdump Group
- Status
- Vendor
- CVE Published:
- 5 September 2026
Badges
👾 Exploit Exists
What is CVE-2026-0799?
A vulnerability within the libpcap BPF interpreter allows crafted filter programs to bypass checks on register index values. This can lead to unauthorized memory access on both 64-bit and 32-bit architectures, enabling the potential reading and writing of sensitive OS process memory. Attackers may exploit this flaw to manipulate or access critical data, emphasizing the need for prompt updates and security measures to protect against potential exploits.
Affected Version(s)
libpcap 0 < 1.10.7
References
CVSS V3.1
Score:
8.7
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Mozilla via the Secure Open Source program
Include Security
Denis Ovsienko
