First published: Tue Dec 19 2023(Updated: )
tcprewrite in tcpreplay v4.4.4 and v.4.4.3 has a double free in function tcpedit_dlt_cleanup in plugins/dlt_plugins.c. It can be triggered by sending a crafted file to the tcprewrite binary. It allows a local attacker to cause Denial of Service or possibly have unspecified other impact. <a href="https://github.com/appneta/tcpreplay/issues/813">https://github.com/appneta/tcpreplay/issues/813</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Tcpreplay | =4.4.3 | |
Broadcom Tcpreplay | =4.4.4 | |
Fedoraproject Extra Packages For Enterprise Linux | =8.0 | |
Fedoraproject Fedora | =39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.