First published: Mon Oct 19 2020(Updated: )
An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap buffer overflow vulnerability in MemcmpInterceptorCommon() that can make tcpprep crash and cause a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Tcpreplay | =4.3.3 | |
Fedoraproject Fedora | =31 | |
Fedoraproject Fedora | =32 | |
Fedoraproject Fedora | =33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24265 is a heap buffer overflow vulnerability in tcpreplay tcpprep v4.3.3.
The severity of CVE-2020-24265 is high (7.5).
Versions 4.3.3 of Broadcom Tcpreplay and Fedora 31, 32, and 33 are affected by CVE-2020-24265.
CVE-2020-24265 can cause a denial of service by crashing Tcpreplay.
There is currently no fix or patch available for CVE-2020-24265. It is recommended to update to a version that is not affected.