TCPDUMP Changelog

What's new in TCPDUMP 4.9.2 build 5072

Oct 30, 2021
  • UEFI and Secure Boot compatibility added:
  • drivers are signed with SHA1, SHA256, and Microsoft certificates. Windows 10 safety spirits must be absolutely satisfied.
  • WIndows Server 2019 support added, so now the following OS are supported: Windows XP, WinXP x64, Windows Vista, Vista x64, Windows 2003, Windows 2008, Windows 2012, Win2003 x64, Windows 8, Windows 10, Windows Server 2016, Windows server 2019.

New in TCPDUMP 4.9.3 (Oct 1, 2019)

  • Fix buffer overflow/overread vulnerabilities:
  • CVE-2017-16808 (AoE)
  • CVE-2018-14468 (FrameRelay)
  • CVE-2018-14469 (IKEv1)
  • CVE-2018-14470 (BABEL)
  • CVE-2018-14466 (AFS/RX)
  • CVE-2018-14461 (LDP)
  • CVE-2018-14462 (ICMP)
  • CVE-2018-14465 (RSVP)
  • CVE-2018-14881 (BGP)
  • CVE-2018-14464 (LMP)
  • CVE-2018-14463 (VRRP)
  • CVE-2018-14467 (BGP)
  • CVE-2018-10103 (SMB - partially fixed, but SMB printing disabled)
  • CVE-2018-10105 (SMB - too unreliably reproduced, SMB printing disabled)
  • CVE-2018-14880 (OSPF6)
  • CVE-2018-16451 (SMB)
  • CVE-2018-14882 (RPL)
  • CVE-2018-16227 (802.11)
  • CVE-2018-16229 (DCCP)
  • CVE-2018-16301 (was fixed in libpcap)
  • CVE-2018-16230 (BGP)
  • CVE-2018-16452 (SMB)
  • CVE-2018-16300 (BGP)
  • CVE-2018-16228 (HNCP)
  • CVE-2019-15166 (LMP)
  • CVE-2019-15167 (VRRP)
  • Fix for cmdline argument/local issues:
  • CVE-2018-14879 (tcpdump -V)

New in TCPDUMP 4.9.2 (Dec 19, 2017)

  • Do not use getprotobynumber() for protocol name resolution Do not do
  • any protocol name resolution if -n is specified.
  • Improve errors detection in the test scripts.
  • Fix a segfault with OpenSSL 1.1 and improve OpenSSL usage.
  • Clean up IS-IS printing.
  • Fix buffer overflow vulnerabilities:
  • CVE-2017-11543 (SLIP)
  • CVE-2017-13011 (bittok2str_internal)
  • Fix infinite loop vulnerabilities:
  • CVE-2017-12989 (RESP)
  • CVE-2017-12990 (ISAKMP)
  • CVE-2017-12995 (DNS)
  • CVE-2017-12997 (LLDP)
  • Fix buffer over-read vulnerabilities:
  • CVE-2017-11541 (safeputs)
  • CVE-2017-11542 (PIMv1)
  • CVE-2017-12893 (SMB/CIFS)
  • CVE-2017-12894 (lookup_bytestring)
  • CVE-2017-12895 (ICMP)
  • CVE-2017-12896 (ISAKMP)
  • CVE-2017-12897 (ISO CLNS)
  • CVE-2017-12898 (NFS)
  • CVE-2017-12899 (DECnet)
  • CVE-2017-12900 (tok2strbuf)
  • CVE-2017-12901 (EIGRP)
  • CVE-2017-12902 (Zephyr)
  • CVE-2017-12985 (IPv6)
  • CVE-2017-12986 (IPv6 routing headers)
  • CVE-2017-12987 (IEEE 802.11)
  • CVE-2017-12988 (telnet)
  • CVE-2017-12991 (BGP)
  • CVE-2017-12992 (RIPng)
  • CVE-2017-12993 (Juniper)
  • CVE-2017-11542 (PIMv1)
  • CVE-2017-11541 (safeputs)
  • CVE-2017-12994 (BGP)
  • CVE-2017-12996 (PIMv2)
  • CVE-2017-12998 (ISO IS-IS)
  • CVE-2017-12999 (ISO IS-IS)
  • CVE-2017-13000 (IEEE 802.15.4)
  • CVE-2017-13001 (NFS)
  • CVE-2017-13002 (AODV)
  • CVE-2017-13003 (LMP)
  • CVE-2017-13004 (Juniper)
  • CVE-2017-13005 (NFS)
  • CVE-2017-13006 (L2TP)
  • CVE-2017-13007 (Apple PKTAP)
  • CVE-2017-13008 (IEEE 802.11)
  • CVE-2017-13009 (IPv6 mobility)
  • CVE-2017-13010 (BEEP)
  • CVE-2017-13012 (ICMP)
  • CVE-2017-13013 (ARP)
  • CVE-2017-13014 (White Board)
  • CVE-2017-13015 (EAP)
  • CVE-2017-11543 (SLIP)
  • CVE-2017-13016 (ISO ES-IS)
  • CVE-2017-13017 (DHCPv6)
  • CVE-2017-13018 (PGM)
  • CVE-2017-13019 (PGM)
  • CVE-2017-13020 (VTP)
  • CVE-2017-13021 (ICMPv6)
  • CVE-2017-13022 (IP)
  • CVE-2017-13023 (IPv6 mobility)
  • CVE-2017-13024 (IPv6 mobility)
  • CVE-2017-13025 (IPv6 mobility)
  • CVE-2017-13026 (ISO IS-IS)
  • CVE-2017-13027 (LLDP)
  • CVE-2017-13028 (BOOTP)
  • CVE-2017-13029 (PPP)
  • CVE-2017-13030 (PIM)
  • CVE-2017-13031 (IPv6 fragmentation header)
  • CVE-2017-13032 (RADIUS)
  • CVE-2017-13033 (VTP)
  • CVE-2017-13034 (PGM)
  • CVE-2017-13035 (ISO IS-IS)
  • CVE-2017-13036 (OSPFv3)
  • CVE-2017-13037 (IP)
  • CVE-2017-13038 (PPP)
  • CVE-2017-13039 (ISAKMP)
  • CVE-2017-13040 (MPTCP)
  • CVE-2017-13041 (ICMPv6)
  • CVE-2017-13042 (HNCP)
  • CVE-2017-13043 (BGP)
  • CVE-2017-13044 (HNCP)
  • CVE-2017-13045 (VQP)
  • CVE-2017-13046 (BGP)
  • CVE-2017-13047 (ISO ES-IS)
  • CVE-2017-13048 (RSVP)
  • CVE-2017-13049 (Rx)
  • CVE-2017-13050 (RPKI-Router)
  • CVE-2017-13051 (RSVP)
  • CVE-2017-13052 (CFM)
  • CVE-2017-13053 (BGP)
  • CVE-2017-13054 (LLDP)
  • CVE-2017-13055 (ISO IS-IS)
  • CVE-2017-13687 (Cisco HDLC)
  • CVE-2017-13688 (OLSR)
  • CVE-2017-13689 (IKEv1)
  • CVE-2017-13690 (IKEv2)
  • CVE-2017-13725 (IPv6 routing headers)

New in TCPDUMP 4.0.0 Build 4.2 (Aug 23, 2012)

  • Add support for Bluetooth Sniffing
  • Add support for Realtek Remote Control Protocol (openrrcp.org.ru)
  • Add support for 802.11 AVS
  • Add support for SMB over TCP
  • Add support for 4 byte BGP AS printing
  • Add support for compiling on case-insensitive file systems
  • Add support for ikev2 printing
  • Update support for decoding AFS
  • Update DHCPv6 printer
  • Use newer libpcap API's (allows -B option on all platforms)
  • Add -I to turn on monitor mode
  • Bugfixes in lldp, lspping, dccp, ESP, NFS printers
  • Cleanup unused files and various cruft

New in TCPDUMP 3.9.8 (Dec 19, 2007)

  • Version synchronized with original tcpdump 3.9.8 and built with Packet Sniffer SDK 4.0. New feature: support of loopback adapter.

New in TCPDUMP 3.9.7 (Sep 14, 2007)

  • Version synchronized with original tcpdump 3.9.7.