PT-2023-23553 · Sngrep+1 · Sngrep+1

Randomssro

·

Published

2023-05-09

·

Updated

2023-06-14

·

CVE-2023-31981

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Sngrep version 1.6.0
Description A stack buffer overflow issue was discovered in the function packet set payload at /src/packet.c. This issue affects the packet set payload function, which is located in the /src/packet.c file.
Recommendations For Sngrep version 1.6.0, consider disabling the packet set payload function as a temporary workaround until a patch is available. Restrict access to the /src/packet.c file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

ALT-PU-2023-1992
CVE-2023-31981

Affected Products

Debian
Sngrep