
CVE-2021-45387 – Gentoo Linux Security Advisory 202210-08
https://notcve.org/view.php?id=CVE-2021-45387
11 Feb 2022 — tcpreplay 4.3.4 has a Reachable Assertion in add_tree_ipv4() at tree.c. tcpreplay versión 4.3.4, presenta una Aserción Alcanzable en la función add_tree_ipv4() en el archivo tree.c Multiple vulnerabilities have been discovered in Tcpreplay, the worst of which could result in denial of service. Versions less than 4.4.2 are affected. • https://github.com/appneta/tcpreplay/issues/687 • CWE-617: Reachable Assertion •

CVE-2020-23273
https://notcve.org/view.php?id=CVE-2020-23273
21 Sep 2021 — Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap. Un desbordamiento del búfer de la pila en la función randomize_iparp en el archivo edit_packet.c. de Tcpreplay versión v4.3.2 permite a atacantes causar una denegación de servicio (DOS) por medio de un pcap diseñado • https://github.com/appneta/tcpreplay/issues/579 • CWE-787: Out-of-bounds Write •

CVE-2020-18976
https://notcve.org/view.php?id=CVE-2020-18976
25 Aug 2021 — Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial of Service via the 'do_checksum' function in 'checksum.c'. It can be triggered by sending a crafted pcap file to the 'tcpreplay-edit' binary. This issue is different than CVE-2019-8381. Un desbordamiento del búfer en Tcpreplay versión v4.3.2, permite a atacantes causar una denegación de servicio por medio de la función "do_checksum" en el archivo "checksum.c". Puede ser desencadenado mediante el envío de un archivo pcap diseñado al binar... • https://github.com/appneta/tcpreplay/issues/556 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2020-24266 – Gentoo Linux Security Advisory 202105-21
https://notcve.org/view.php?id=CVE-2020-24266
19 Oct 2020 — An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap buffer overflow vulnerability in get_l2len() that can make tcpprep crash and cause a denial of service. Se detectó un problema en tcpreplay tcpprep versión v4.3.3. Se presenta una vulnerabilidad de desbordamiento del búfer en la región heap de la memoria en la función get_l2len() que puede hacer que tcpprep se bloquee y cause una denegación de servicio Multiple vulnerabilities have been found in Tcpreplay, the worst of which could res... • https://github.com/appneta/tcpreplay/issues/617 • CWE-787: Out-of-bounds Write •

CVE-2020-24265 – Gentoo Linux Security Advisory 202105-21
https://notcve.org/view.php?id=CVE-2020-24265
19 Oct 2020 — An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap buffer overflow vulnerability in MemcmpInterceptorCommon() that can make tcpprep crash and cause a denial of service. Se detectó un problema en tcpreplay tcpprep versión v4.3.3. Se presenta una vulnerabilidad de desbordamiento del búfer de pila en la función MemcmpInterceptorCommon() que puede hacer que tcpprep se bloquee y cause una denegación de servicio Multiple vulnerabilities have been found in Tcpreplay, the worst of which could... • https://github.com/appneta/tcpreplay/issues/616 • CWE-787: Out-of-bounds Write •

CVE-2020-12740
https://notcve.org/view.php?id=CVE-2020-12740
08 May 2020 — tcprewrite in Tcpreplay through 4.3.2 has a heap-based buffer over-read during a get_c operation. The issue is being triggered in the function get_ipv6_next() at common/get.c. El componente tcprewrite en Tcpreplay versiones hasta 4.3.2, presenta una lectura excesiva del búfer en la región heap de la memoria durante una operación get_c. El problema ha sido activado en la función get_ipv6_next() en el archivo common/get.c. • https://github.com/appneta/tcpreplay/issues/576 • CWE-125: Out-of-bounds Read •

CVE-2019-8376
https://notcve.org/view.php?id=CVE-2019-8376
17 Feb 2019 — An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be triggered by sending a crafted pcap file to the tcpreplay-edit binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact. Se ha descubierto un problema en Tcpreplay 4.3.1. • http://www.securityfocus.com/bid/107085 • CWE-476: NULL Pointer Dereference •

CVE-2019-8377
https://notcve.org/view.php?id=CVE-2019-8377
17 Feb 2019 — An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_ipv6_l4proto() located at get.c. This can be triggered by sending a crafted pcap file to the tcpreplay-edit binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact. Se ha descubierto un problema en Tcpreplay 4.3.1. • http://www.securityfocus.com/bid/107085 • CWE-476: NULL Pointer Dereference •

CVE-2019-8381
https://notcve.org/view.php?id=CVE-2019-8381
17 Feb 2019 — An issue was discovered in Tcpreplay 4.3.1. An invalid memory access occurs in do_checksum in checksum.c. It can be triggered by sending a crafted pcap file to the tcpreplay-edit binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact. Se ha descubierto un problema en Tcpreplay 4.3.1. • https://github.com/appneta/tcpreplay/issues/538 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2018-20552
https://notcve.org/view.php?id=CVE-2018-20552
28 Dec 2018 — Tcpreplay before 4.3.1 has a heap-based buffer over-read in packet2tree in tree.c. Tcpreplay, en versiones anteriores a la 4.3.1, tiene una sobrelectura de búfer basada en memoria dinámica (heap) en packet2tree en tree.c. • https://github.com/appneta/tcpreplay/issues/530 • CWE-125: Out-of-bounds Read •