The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in addrtoname.c:lookup_nsap(). http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-5485