Critical severity9.8OSV Advisory· Published Oct 17, 2018· Updated Jun 17, 2026
CVE-2018-18408
CVE-2018-18408
Description
A use-after-free was discovered in the tcpbridge binary of Tcpreplay 4.3.0 beta1. The issue gets triggered in the function post_args() at tcpbridge.c, causing a denial of service or possibly unspecified other impact.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:broadcom:tcpreplay:4.3.0:beta1:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
- Range: = 4.3.0 beta1
Patches
Vulnerability mechanics
References
4- github.com/appneta/tcpreplay/issues/489nvdPatchThird Party Advisory
- github.com/SegfaultMasters/covering360/blob/master/tcpreplay/README.mdnvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4V3SADKXUSHWTVAPU3WLXBDEQUHRA6ZO/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MLPY6W7Z7G6PF2JN4LXXHCACYLD4RBG6/nvd
News mentions
0No linked articles in our index yet.