openSUSE-SU-2023:0267-1
Dashboard / Vulnerabilities / openSUSE-SU-2023:0267-1
openSUSE-SU-2023:0267-1
Summary: Security update for tcpreplay
Details: This update for tcpreplay fixes the following issues: Update to 4.4.4: * overflow check fix for parse_mpls. * tcpreplay-edit: prevent L2 flooding of ipv6 unicast packets. * CVE-2023-27786: bugs caused by strtok_r. (boo#1209416) * CVE-2023-27783 reachable assert in tcpedit_dlt_cleanup (boo#1209413) * reachable assert in fast_edit_packet.
References: https://lists.opensuse.org/archives/list/[email protected]/thread/WHVN36IVFXJ2224ASIQPWW2NGLN7SXGF/, https://bugzilla.suse.com/1209413, https://bugzilla.suse.com/1209416, https://www.suse.com/security/cve/CVE-2023-27783, https://www.suse.com/security/cve/CVE-2023-27786
Affected packages
Package
Name: tcpreplay
Purl: pkg:rpm/suse/tcpreplay&distro=SUSE%20Package%20Hub%2015%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
