VYPR
Unrated severityOSV Advisory· Published Sep 28, 2018· Updated Aug 5, 2024

CVE-2018-17580

CVE-2018-17580

Description

A heap-based buffer over-read exists in the function fast_edit_packet() in the file send_packets.c of Tcpreplay v4.3.0 beta1. This can lead to Denial of Service (DoS) and potentially Information Exposure when the application attempts to process a crafted pcap file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A heap-based buffer over-read in Tcpreplay v4.3.0 beta1's fast_edit_packet() allows DoS and information disclosure via a crafted pcap file.

Vulnerability

A heap-based buffer over-read vulnerability exists in the fast_edit_packet() function in send_packets.c of Tcpreplay v4.3.0 beta1. The function reads from an ip_hdr pointer without verifying that the packet data is large enough, leading to an out-of-bounds read when processing a crafted pcap file. The issue affects the 4.3 branch [1] [2].

Exploitation

An attacker can trigger the vulnerability by providing a specially crafted pcap file as input to the tcpreplay binary. No special privileges are required; the attacker only needs the ability to supply the malicious file. The specific command used for reproduction is sudo tcpreplay -i eno1 -t -K --loop 4 --unique-ip $POC. When fast_edit_packet() processes the crafted packet, it reads from an invalid memory region (heap buffer overflow) at line 290 of send_packets.c [2]. Additionally, a separate heap overflow in get_next_packet() (line 1045) can also be triggered [1].

Impact

Successful exploitation can cause a denial of service (DoS) due to application crash, and may lead to information exposure as heap memory contents could be read during the out-of-bounds access. The attacker does not gain code execution or elevated privileges based on the available information [1] [2].

Mitigation

As of the available references, no patch has been released for this vulnerability. The issue affects the 4.3 branch (including v4.3.0 beta1). Users are advised to avoid processing untrusted pcap files with the affected version until a fix is available. No workaround is documented. Monitor Tcpreplay updates for a patched release [1] [2].

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.