CVE-2025-9157

A vulnerability was determined in appneta tcpreplay up to 4.5.2-beta2. The impacted element is the function untrunc_packet of the file src/tcpedit/edit_packet.c of the component tcprewrite. Executing manipulation can lead to use after free. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. This patch is called 73008f261f1cdf7a1087dc8759115242696d35da. Applying a patch is advised to resolve this issue.
Configurations

No configuration.

History

20 Aug 2025, 14:40

Type Values Removed Values Added
Summary
  • (es) Se detectó una vulnerabilidad en appneta tcpreplay hasta la versión 4.5.2-beta2. El elemento afectado es la función untrunc_packet del archivo src/tcpedit/edit_packet.c del componente tcprewrite. La manipulación puede provocar un use after free. Es posible lanzar el ataque contra el host local. Se ha hecho público el exploit y puede que sea utilizado . Este parche se llama 73008f261f1cdf7a1087dc8759115242696d35da. Se recomienda aplicar un parche para resolver este problema.

19 Aug 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-19 20:15

Updated : 2025-08-20 14:40


NVD link : CVE-2025-9157

Mitre link : CVE-2025-9157

CVE.ORG link : CVE-2025-9157


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-416

Use After Free