CVE Vulnerabilities

CVE-2023-43279

NULL Pointer Dereference

Published: Mar 12, 2024 | Modified: Nov 04, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Null Pointer Dereference in mask_cidr6 component at cidr.c in Tcpreplay 4.4.4 allows attackers to crash the application via crafted tcprewrite command.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
TcpreplayBroadcom4.4.4 (including)4.4.4 (including)
TcpreplayUbuntuesm-apps/bionic*
TcpreplayUbuntuesm-apps/focal*
TcpreplayUbuntuesm-apps/jammy*
TcpreplayUbuntuesm-apps/noble*
TcpreplayUbuntuesm-apps/xenial*
TcpreplayUbuntufocal*
TcpreplayUbuntujammy*
TcpreplayUbuntumantic*
TcpreplayUbuntunoble*
TcpreplayUbuntuupstream*

Potential Mitigations

References