PT-2026-69127 · Gopacket · Gopacket
CVE-2026-65819
·
Published
2026-08-07
·
Updated
2026-08-11
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
gopacket versions prior to 1.7.1
Description
Multiple layer decoders use attacker-controlled lengths, counts, or offsets before validating them against packet buffers. This allows a crafted packet processed through
DecodingLayerParser or DecodeFromBytes to trigger an unrecovered panic, resulting in a remote denial of service.Recommendations
Update gopacket to version 1.7.1 or later.
Exploit
Fix
DoS
Out of bounds Read
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Gopacket