Bug ID 1189837
Summary VUL-0: CVE-2020-18976: tcpreplay: sending a crafted pcap file to the 'tcpreplay-edit could result in DoS
Classification openSUSE
Product openSUSE Distribution
Version Leap 42.3
Hardware Other
URL https://smash.suse.de/issue/308326/
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Other
Assignee mpluskal@suse.com
Reporter gianluca.gabrielli@suse.com
QA Contact security-team@suse.de
Found By Security Response Team
Blocker ---

Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial of
Service via the 'do_checksum' function in 'checksum.c'. It can be triggered by
sending a crafted pcap file to the 'tcpreplay-edit' binary. This issue is
different than CVE-2019-8381.

References:

https://github.com/appneta/tcpreplay/issues/556

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1997812
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-18976
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-18976
https://github.com/appneta/tcpreplay/issues/556


You are receiving this mail because: