Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4256

Опубликовано: 21 дек. 2023
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. This flaw enables a local attacker to initiate a Denial of Service (DoS) attack.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:broadcom:tcpreplay:4.4.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:tcpreplay:4.4.4:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:fedoraproject:extra_packages_for_enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*

EPSS

Процентиль: 1%
0.00011
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-415
CWE-415

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 лет назад

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. This flaw enables a local attacker to initiate a Denial of Service (DoS) attack.

CVSS3: 5.5
debian
около 2 лет назад

Within tcpreplay's tcprewrite, a double free vulnerability has been id ...

CVSS3: 5.5
github
около 2 лет назад

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. This flaw enables a local attacker to initiate a Denial of Service (DoS) attack.

suse-cvrf
2 месяца назад

Security update for tcpreplay

EPSS

Процентиль: 1%
0.00011
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-415
CWE-415