Candidate: CVE-2017-6429 PublicDate: 2017-03-15 15:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6429 https://github.com/appneta/tcpreplay/issues/278 https://github.com/appneta/tcpreplay/commit/d689d14dbcd768c028eab2fb378d849e543dcfe9 Description: Buffer overflow in the tcpcapinfo utility in Tcpreplay before 4.2.0 Beta 1 allows remote attackers to have unspecified impact via a pcap file with an over-size packet. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Aromal Raj Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [7.8 HIGH] Patches_tcpreplay: upstream: https://github.com/appneta/tcpreplay/commit/d689d14dbcd768c028eab2fb378d849e543dcfe9 upstream_tcpreplay: released (4.2.0) precise_tcpreplay: ignored (reached end-of-life) precise/esm_tcpreplay: DNE (precise was needed) trusty_tcpreplay: not-affected (code not present) trusty/esm_tcpreplay: DNE (trusty was not-affected [code not present]) vivid/stable-phone-overlay_tcpreplay: DNE vivid/ubuntu-core_tcpreplay: DNE xenial_tcpreplay: not-affected (code not present) yakkety_tcpreplay: ignored (reached end-of-life) zesty_tcpreplay: ignored (reached end-of-life) artful_tcpreplay: ignored (reached end-of-life) bionic_tcpreplay: not-affected (4.2.6-1) cosmic_tcpreplay: not-affected (4.2.6-1) devel_tcpreplay: not-affected (4.2.6-1)