First published: Sat Mar 26 2022(Updated: )
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Tcpreplay | =4.4.1 | |
Fedoraproject Fedora | =35 | |
Fedoraproject Fedora | =36 | |
Fedoraproject Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-27941.
The severity of CVE-2022-27941 is high with a CVSS score of 7.8.
Tcpreplay 4.4.1 and Fedora 35, 36, and 37 are affected by CVE-2022-27941.
The CWE ID associated with CVE-2022-27941 is CWE-125.
To fix the vulnerability CVE-2022-27941, update Tcpreplay to a version that includes the patch provided by the vendor.