Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vulnerability is to data confidentiality.
References
Link | Resource |
---|---|
https://github.com/appneta/tcpreplay/pull/720 | Patch Third Party Advisory |
https://github.com/appneta/tcpreplay/issues/723 | Exploit Issue Tracking Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ECRCFJ6X3IVB7BT4KS6AHQMSL532YXYD/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5B75AFRJUGOYHCFG2ZV2JKSUPA6MSCT5/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JWRZO7BG6DHA5NAC3COB45WFXLYRIERC/ | Mailing List Third Party Advisory |
https://security.gentoo.org/glsa/202210-08 |
Information
Published : 2022-05-04 08:15
Updated : 2022-10-16 10:15
NVD link : CVE-2022-28487
Mitre link : CVE-2022-28487
JSON object : View
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
Products Affected
fedoraproject
- fedora
broadcom
- tcpreplay