CVE-2018-17580: High severity tcpreplay vulnerability
Published Sep 28, 2018
·Updated
A heap-based buffer over-read exists in the function fasteditpacket() in the file sendpackets.c of Tcpreplay v4.3.0 beta1. This can lead to Denial of Service (DoS) and potentially Information Exposure when the application attempts to process a crafted pcap file.
Affected Software
1 affected component
Broadcom Tcpreplay=4.3.0-beta1
Remediation
Patch Available
Event History
Sep 28, 2018
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2018-17580.
2
What is the severity rating of CVE-2018-17580?
CVE-2018-17580 has a severity rating of 7.1 (high).
3
Which software version is affected by CVE-2018-17580?
CVE-2018-17580 affects Tcpreplay v4.3.0 beta1.
4
What is the potential impact of CVE-2018-17580?
CVE-2018-17580 can lead to Denial of Service (DoS) and potentially Information Exposure.
5
Is there a fix available for CVE-2018-17580?
There are no known fixes or patches available for CVE-2018-17580 at the moment.