CVE-2025-9386
- EPSS 0.03%
- Published 24.08.2025 11:02:07
- Last modified 06.10.2025 18:26:51
A vulnerability has been found in appneta tcpreplay up to 4.5.1. The impacted element is the function get_l2len_protocol of the file get.c of the component tcprewrite. Such manipulation leads to use after free. The attack must be carried out locally....
CVE-2025-9385
- EPSS 0.02%
- Published 24.08.2025 10:32:06
- Last modified 06.10.2025 18:36:56
A flaw has been found in appneta tcpreplay up to 4.5.1. The affected element is the function fix_ipv6_checksums of the file edit_packet.c of the component tcprewrite. This manipulation causes use after free. The attack is restricted to local executio...
CVE-2025-9384
- EPSS 0.02%
- Published 24.08.2025 10:02:07
- Last modified 06.10.2025 18:41:18
A vulnerability was detected in appneta tcpreplay up to 4.5.1. Impacted is the function tcpedit_post_args of the file /src/tcpedit/parse_args.c. The manipulation results in null pointer dereference. The attack is only possible with local access. The ...
CVE-2025-9019
- EPSS 0.2%
- Published 15.08.2025 07:02:10
- Last modified 11.09.2025 17:53:34
A vulnerability has been found in tcpreplay 4.5.1. This vulnerability affects the function mask_cidr6 of the file cidr.c of the component tcpprep. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely. The complex...
CVE-2024-22654
- EPSS 0.09%
- Published 29.05.2025 00:00:00
- Last modified 23.06.2025 14:42:44
tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
CVE-2024-3024
- EPSS 0.08%
- Published 28.03.2024 02:15:11
- Last modified 16.04.2025 19:00:49
A vulnerability was found in appneta tcpreplay up to 4.4.4. It has been classified as problematic. This affects the function get_layer4_v6 of the file /tcpreplay/src/common/get.c. The manipulation leads to heap-based buffer overflow. Attacking locall...
CVE-2023-43279
- EPSS 0.01%
- Published 12.03.2024 22:15:07
- Last modified 16.04.2025 15:36:59
Null Pointer Dereference in mask_cidr6 component at cidr.c in Tcpreplay 4.4.4 allows attackers to crash the application via crafted tcprewrite command.
CVE-2023-4256
- EPSS 0.01%
- Published 21.12.2023 16:15:10
- Last modified 21.11.2024 08:34:44
Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. ...
CVE-2023-27789
- EPSS 0.12%
- Published 16.03.2023 15:15:11
- Last modified 26.02.2025 17:15:20
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.
CVE-2023-27788
- EPSS 0.15%
- Published 16.03.2023 15:15:11
- Last modified 26.02.2025 17:15:20
An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint.