CVE-2024-22654: High severity tcpreplay vulnerability
Published May 29, 2025
·Updated
tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
Affected Software
2 affected components
Tcpreplay Tcpreplay
Broadcom Tcpreplay=4.4.4
Event History
May 29, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22654?
CVE-2024-22654 has been categorized as a high severity vulnerability due to its potential to cause an infinite loop in tcpreplay.
2
How does CVE-2024-22654 affect tcpreplay?
CVE-2024-22654 affects tcpreplay by causing an infinite loop during the execution of the tcprewrite function, which can lead to denial of service.
3
How do I fix CVE-2024-22654?
To fix CVE-2024-22654, update to version 4.4.5 or later of tcpreplay, which contains the necessary patches.
4
What are the potential impacts of CVE-2024-22654?
The potential impacts of CVE-2024-22654 include system downtime and resource exhaustion due to the infinite loop.
5
Is CVE-2024-22654 currently being exploited in the wild?
As of now, there are no confirmed reports of CVE-2024-22654 being actively exploited in the wild.