Описание
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packets, as demonstrated by tcpprep.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| tcpreplay | fixed | 4.3.1-1 | package | |
| tcpreplay | no-dsa | stretch | package | |
| tcpreplay | no-dsa | jessie | package |
Примечания
https://github.com/appneta/tcpreplay/issues/477
https://github.com/appneta/tcpreplay/issues/408
https://github.com/appneta/tcpreplay/commit/0253c4707446b9500804101122a72dde2763ed8f
Связанные уязвимости
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packets, as demonstrated by tcpprep.
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packets, as demonstrated by tcpprep.
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packets, as demonstrated by tcpprep.