CVE-2022-27942: High severity tcpreplay vulnerability
Published Mar 26, 2022
·Updated
tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parsempls in common/get.c.
Affected Software
4 affected components
Broadcom Tcpreplay=4.4.1
fedoraproject fedora=35
fedoraproject fedora=36
fedoraproject fedora=37
Event History
Mar 26, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-27942.
2
What is the severity of CVE-2022-27942?
The severity of CVE-2022-27942 is high (7.8).
3
What software versions are affected by CVE-2022-27942?
Tcpreplay version 4.4.1 is affected by CVE-2022-27942.
4
What is the CWE ID of CVE-2022-27942?
The CWE ID of CVE-2022-27942 is CWE-125.
5
Are there any references available for CVE-2022-27942?
Yes, you can find references for CVE-2022-27942 at the following links: - [GitHub Issue](https://github.com/appneta/tcpreplay/issues/719) - [Fedora Project Announcement 1](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5B75AFRJUGOYHCFG2ZV2JKSUPA6MSCT5/) - [Fedora Project Announcement 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ECRCFJ6X3IVB7BT4KS6AHQMSL532YXYD/)