Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Msxf

#17299of 53,622
15.6Total CVSS
Vulnerabilities · 2
High
2
PT-2024-23286
7.8
2024-03-27
Appneta · Appneta Tcpreplay · CVE-2024-3024
**Name of the Vulnerable Software and Affected Versions** appneta tcpreplay versions up to 4.4.4 **Description** A vulnerability was found in appneta tcpreplay, affecting the function `get layer4 v6` of the file `/tcpreplay/src/common/get.c`. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. **Recommendations** As a temporary workaround, consider disabling the `get layer4 v6` function until a patch is available. Restrict access to the `/tcpreplay/src/common/get.c` file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-15942
7.8
2024-01-27
Libcoap · Libcoap · CVE-2024-0962
**Name of the Vulnerable Software and Affected Versions** obgm libcoap version 4.3.4 **Description** A critical issue has been found in the function `get split entry` of the file `src/coap oscore.c` of the component Configuration File Handler. This issue leads to a stack-based buffer overflow. The attack can be launched remotely. **Recommendations** For version 4.3.4, it is recommended to apply a patch to fix this issue. As a temporary workaround, consider disabling the `get split entry` function until a patch is available.