Security: pavel-odintsov/fastnetmon
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
IPv6 host counters map iterated without lock, racing concurrent insertsGHSA-phrw-2q76-5m7h published
Jul 20, 2026 by pavel-odintsovModerate -
NetFlow v9 unbounded strlen() on interface-description field causes remote out-of-bounds readGHSA-ff5f-p5jw-8fq2 published
Jul 20, 2026 by pavel-odintsovHigh -
IPv6 Fragment header dereferenced without bounds check in shared packet parserGHSA-jmjw-392h-4g93 published
Jul 20, 2026 by pavel-odintsovHigh -
Legacy pcap parse_packet() has no bounds checking, causing out-of-bounds read on truncated framesGHSA-c27c-943r-vr8h published
Jul 20, 2026 by pavel-odintsovHigh -
sFlow header_size field trusted as parser capture length causes remote out-of-bounds readGHSA-852r-3wcv-pjx2 published
Jul 20, 2026 by pavel-odintsovHigh -
NetFlow/IPFIX template cache returns unlocked pointers, causing heap-use-after-free on multi-port deploymentsGHSA-ph88-95vc-x6gv published
Jul 20, 2026 by pavel-odintsovHigh -
Zero-length templates for Netflow v9 allow remote attackers to cause a denial of service (divide-by-zero error and application crash)GHSA-84h6-mj9j-g3pp published
Dec 16, 2024 by pavel-odintsovHigh -
The sFlow v5 plugin allows remote attackers to cause a denial of service (application crash) via a crafted packetGHSA-qv7c-2ffq-h7cf published
Dec 16, 2024 by pavel-odintsovHigh