PT-2022-23770 · Tcpreplay+2 · Tcpreplay+2

Fklassen

·

Published

2022-08-18

·

Updated

2022-11-30

·

CVE-2022-37049

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tcpreplay version 4.4.1
Description A heap-based buffer overflow was discovered in the tcpprep component of Tcpreplay, specifically in the parse mpls function at common/get.c:150.
Recommendations For Tcpreplay version 4.4.1, consider restricting access to the parse mpls function in common/get.c until a patch is available.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

ALT-PU-2022-3223
ALT-PU-2022-3236
ALT-PU-2022-3237
ALT-PU-2022-3245
CVE-2022-37049
MGASA-2022-0345

Affected Products

Alt Linux
Debian
Tcpreplay