CVE-2022-37047: Buffer Overflow
Published Aug 18, 2022
·Updated
The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in getipv6next at common/get.c:713. NOTE: this is different from CVE-2022-27940.
Affected Software
4 affected components
Broadcom Tcpreplay=4.4.1
fedoraproject fedora=35
fedoraproject fedora=36
fedoraproject fedora=37
Event History
Aug 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37047?
CVE-2022-37047 is classified as a high severity vulnerability due to its potential for exploitation via heap-based buffer overflow.
2
How do I fix CVE-2022-37047?
To fix CVE-2022-37047, update the Tcpreplay software to version 4.4.2 or later.
3
Which versions of Tcpreplay are affected by CVE-2022-37047?
Tcpreplay version 4.4.1 is the only affected version for CVE-2022-37047.
4
What components are impacted by CVE-2022-37047?
CVE-2022-37047 impacts the tcprewrite component of the Tcpreplay toolkit.
5
Is CVE-2022-37047 specific to any operating system?
CVE-2022-37047 primarily affects systems running Fedora 35, 36, and 37.