CVE-2018-17582

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
5.8
MEDIUM
Affected
2
PROJECTS

Description

Tcpreplay v4.3.0 beta1 contains a heap-based buffer over-read. The get_next_packet() function in the send_packets.c file uses the memcpy() function unsafely to copy sequences from the source buffer pktdata to the destination (*prev_packet)->pktdata. This will result in a Denial of Service (DoS) and potentially Information Exposure when the application attempts to process a file.

Pcap editing and replay tools for *NIX and Windows - Users please download source from
GitHubGitHub
1.32K
Discovering the vulnerabilities in open source packages.
GitHubGitHub
4