CVE-2024-3024

A vulnerability was found in appneta tcpreplay up to 4.4.4. It has been classified as problematic. This affects the function get_layer4_v6 of the file /tcpreplay/src/common/get.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-258333 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

No configuration.

History

21 Nov 2024, 09:28

Type Values Removed Values Added
References () https://docs.google.com/document/d/1wCIrViAJwGsO5afPBLLjRhO5RClsoUo3J9q1psLs84s/edit?usp=sharing - () https://docs.google.com/document/d/1wCIrViAJwGsO5afPBLLjRhO5RClsoUo3J9q1psLs84s/edit?usp=sharing -
References () https://drive.google.com/file/d/1zV9MSkfYLIrdtK3yczy1qbsJr_yN2fwH/view - () https://drive.google.com/file/d/1zV9MSkfYLIrdtK3yczy1qbsJr_yN2fwH/view -
References () https://vuldb.com/?ctiid.258333 - () https://vuldb.com/?ctiid.258333 -
References () https://vuldb.com/?id.258333 - () https://vuldb.com/?id.258333 -
References () https://vuldb.com/?submit.297866 - () https://vuldb.com/?submit.297866 -

11 Apr 2024, 01:25

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en appneta tcpreplay hasta 4.4.4. Ha sido clasificado como problemático. Esto afecta a la función get_layer4_v6 del archivo /tcpreplay/src/common/get.c. La manipulación conduce a un desbordamiento del búfer basado en el montón. Atacar localmente es un requisito. El exploit ha sido divulgado al público y puede utilizarse. A esta vulnerabilidad se le asignó el identificador VDB-258333. NOTA: Se contactó primeramente con el proveedor sobre esta divulgación, pero no respondió de ninguna manera.

28 Mar 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-28 02:15

Updated : 2024-11-21 09:28


NVD link : CVE-2024-3024

Mitre link : CVE-2024-3024

CVE.ORG link : CVE-2024-3024


JSON object : View

Products Affected

No product.

CWE
CWE-122

Heap-based Buffer Overflow