CVE-2026-31911
Dashboard / Vulnerabilities / CVE-2026-31911
CVE-2026-31911
Published: 5 Sept 2026Last Modified: 27 Sept 2026
Summary: abort() in libpcap before 1.10.7 on an invalid BPF opcode
Details: libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program can terminate the OS process.
References: https://github.com/the-tcpdump-group/libpcap/, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31911.json, https://nvd.nist.gov/vuln/detail/CVE-2026-31911, https://github.com/the-tcpdump-group/libpcap/commit/a715bcdde830299cba4171514385cb17ec19b6e9
Affected packages
Package
Name:
Purl:
Affected ranges
Affected versions
libpcap-1.10.6
libpcap-1.10.5
libpcap-1.10.4
libpcap-1.10.3
libpcap-1.10.2
libpcap-1.10.1
libpcap-1.10.0
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
