Show filters
41 Total Results
Displaying 1-10 of 41
Sort by:
Attacker Value
Unknown

CVE-2024-3024

Disclosure Date: March 28, 2024 (last updated April 11, 2024)
A vulnerability was found in appneta tcpreplay up to 4.4.4. It has been classified as problematic. This affects the function get_layer4_v6 of the file /tcpreplay/src/common/get.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-258333 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown

CVE-2023-4256

Disclosure Date: December 21, 2023 (last updated January 03, 2024)
Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. This flaw enables a local attacker to initiate a Denial of Service (DoS) attack.
Attacker Value
Unknown

CVE-2023-27789

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.
Attacker Value
Unknown

CVE-2023-27788

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint.
Attacker Value
Unknown

CVE-2023-27787

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at the list.c:81 endpoint.
Attacker Value
Unknown

CVE-2023-27786

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function.
Attacker Value
Unknown

CVE-2023-27785

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function.
Attacker Value
Unknown

CVE-2023-27784

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint.
Attacker Value
Unknown

CVE-2023-27783

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/dlt_plugins.c.
Attacker Value
Unknown

CVE-2022-37048

Disclosure Date: August 18, 2022 (last updated February 24, 2025)
The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_l2len_protocol at common/get.c:344. NOTE: this is different from CVE-2022-27941.