First published: Thu Aug 18 2022(Updated: )
The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_ipv6_next at common/get.c:713. NOTE: this is different from CVE-2022-27940.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tcpreplay | =4.4.1 | |
Fedora | =35 | |
Fedora | =36 | |
Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37047 is classified as a high severity vulnerability due to its potential for exploitation via heap-based buffer overflow.
To fix CVE-2022-37047, update the Tcpreplay software to version 4.4.2 or later.
Tcpreplay version 4.4.1 is the only affected version for CVE-2022-37047.
CVE-2022-37047 impacts the tcprewrite component of the Tcpreplay toolkit.
CVE-2022-37047 primarily affects systems running Fedora 35, 36, and 37.