PT-2020-15674 · Tcpreplay+4 · Tcpreplay+4
Jimoyong
·
Published
2020-10-19
·
Updated
2024-06-15
·
CVE-2020-24266
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
tcpreplay tcpprep version 4.3.3
Description
An issue was discovered in tcpreplay tcpprep. There is a heap buffer overflow vulnerability in the
get l2len() function that can make tcpprep crash and cause a denial of service.Recommendations
For version 4.3.3, consider applying a patch or fix to address the heap buffer overflow vulnerability in the
get l2len() function. As a temporary workaround, consider restricting the use of the get l2len() function until a patch is available.Exploit
Fix
DoS
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Debian
Linuxmint
Ubuntu
Tcpreplay