CVE-2020-23273: Buffer Overflow
Published Sep 21, 2021
·Updated
Heap-buffer overflow in the randomizeiparp function in editpacket.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap.
Affected Software
1 affected component
Broadcom Tcpreplay=4.3.2
Event History
Sep 21, 2021
CVE Published
via MITRE·11:04 PM
Data Sourced
via MITRE·11:04 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this heap-buffer overflow in Tcpreplay?
The vulnerability ID is CVE-2020-23273.
2
What is the severity rating of CVE-2020-23273?
The severity rating of CVE-2020-23273 is medium with a score of 5.5.
3
Which software version is affected by this heap-buffer overflow vulnerability?
The vulnerability affects Tcpreplay version 4.3.2.
4
What is the impact of this vulnerability?
This vulnerability allows attackers to cause a denial of service (DOS) by exploiting a heap-buffer overflow in the randomize_iparp function.
5
Is there any fix or remediation available for this vulnerability?
To mitigate this vulnerability, it is recommended to update to a patched version of Tcpreplay.