CVE-2023-27789: High severity tcpreplay vulnerability
Published Mar 16, 2023
·Updated
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.
Affected Software
2 affected componentsFixes available
debian/tcpreplay<=4.3.3-2, <=4.4.3-1
4.5.1-1
Broadcom Tcpreplay=4.4.3
Remediation
Patch Available
Patch Available
Event History
Mar 16, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 28, 2025
Data Sourced
via Ubuntu·05:56 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·05:57 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-27789?
The severity of CVE-2023-27789 is high (7.5).
2
Which software version is affected by CVE-2023-27789?
TCPprep v4.4.3 is affected by CVE-2023-27789.
3
How can a remote attacker exploit CVE-2023-27789?
A remote attacker can exploit CVE-2023-27789 by causing a denial of service through the cidr2cidr function at the cidr.c:178 endpoint.
4
Is there a fix available for CVE-2023-27789?
Yes, a fix for CVE-2023-27789 is available. Please refer to the provided references for more information.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-27789?
The CWE ID for CVE-2023-27789 is CWE-617.