PT-2022-18412 · Tcpreplay+2 · Tcpreplay+2

Zfeixqo

·

Published

2022-04-12

·

Updated

2022-11-30

·

CVE-2022-27418

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tcpreplay version 4.4.1
Description The issue is a heap-based buffer overflow in the do checksum math function located at /tcpedit/checksum.c.
Recommendations For Tcpreplay version 4.4.1, consider applying a patch or fix to address the heap-based buffer overflow in the do checksum math function. As a temporary workaround, restrict access to the do checksum math function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

ALT-PU-2022-3223
ALT-PU-2022-3236
ALT-PU-2022-3237
ALT-PU-2022-3245
CVE-2022-27418

Affected Products

Alt Linux
Debian
Tcpreplay