The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in getl2lenprotocol at common/get.c:344. NOTE: this is different from CVE-2022-27941.
The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in getipv6next at common/get.c:713. NOTE: this is different from CVE-2022-27940.
The component tcpprep in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in parsempls at common/get.c:150. NOTE: this is different from CVE-2022-27942.
Tcpreplay version 4.4.1 contains a memory leakage flaw in fixipv6checksums() function. The highest threat from this vulnerability is to data confidentiality.
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in getl2lenprotocol in common/get.c.
tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parsempls in common/get.c.
tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in getlayer4v6 in common/get.c.
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in getipv6next in common/get.c.
Tcpreplay v4.4.1 was discovered to contain a double-free via interceptorfree.
Tcpreplay v4.4.1 has a heap-based buffer overflow in dochecksummath at /tcpedit/checksum.c.
tcpprep v4.4.1 has a reachable assertion (assert(l2len > 0)) in packet2tree() at tree.c in tcpprep v4.4.1.