Updated tcpdump packages that correctly drop privileges on startup are available.
Tcpdump is a command-line tool for monitoring network traffic.
The Red Hat tcpdump packages advertise that by default tcpdump will drop permissions to user 'pcap'. Due to a compilation error this did not happen, and tcpdump would run as root unless the '-U' flag was specified.
Users of tcpdump are advised to upgrade to these errata packages, which are compiled so that by default tcpdump will drop privileges to the 'pcap' user.
Affected products are:
Red Hat Linux 7.1
Red Hat Linux 7.2
Red Hat Linux 7.3
Red Hat Linux 8.0
Red Hat Linux 9
For details, see http://rhn.redhat.com/errata/RHSA-2003-174.html.