First published: Sun Feb 17 2019(Updated: )
An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be triggered by sending a crafted pcap file to the tcpreplay-edit binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Tcpreplay | =4.3.1 | |
Fedoraproject Fedora | =28 | |
Fedoraproject Fedora | =29 | |
Fedoraproject Fedora | =30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-8376 is a vulnerability in Tcpreplay 4.3.1 that allows an attacker to cause a Denial of Service (Segmentation fault) or potentially have other impacts.
CVE-2019-8376 has a severity score of 7.8 (High).
CVE-2019-8376 affects Tcpreplay 4.3.1 and possibly certain versions of Fedoraproject Fedora.
The NULL pointer dereference vulnerability in Tcpreplay 4.3.1 can be triggered by sending a crafted pcap file to the tcpreplay-edit binary.
Please refer to the provided references for information on available fixes or patches for CVE-2019-8376.