CVE-2023-27784: Null Pointer Dereference
An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the readhexstring function at the utils.c:309 endpoint.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-27784?
CVE-2023-27784 is a vulnerability found in TCPReplay v.4.4.3 that allows a remote attacker to cause a denial of service.
How does the CVE-2023-27784 vulnerability work?
The CVE-2023-27784 vulnerability in TCPReplay v.4.4.3 is triggered by a remote attacker exploiting the read_hexstring function at the utils.c:309 endpoint, which results in a denial of service.
What is the severity of CVE-2023-27784?
The severity of CVE-2023-27784 is high, with a severity value of 7.5.
How can I fix the CVE-2023-27784 vulnerability?
To fix the CVE-2023-27784 vulnerability, update TCPReplay to version 4.4.4 or later.
Where can I find more information about CVE-2023-27784?
More information about CVE-2023-27784 can be found at the following references: [Reference 1](https://github.com/appneta/tcpreplay/issues/787), [Reference 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/R3ER3YTFR3XIDMYEB7LMFWFTPVQALBHC/), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UE3J4LKYFNKPKNSLDQK4JG36THQMQH3V/)