CVE-2025-9157 | appneta tcpreplay up to 4.5.2-beta2 tcprewrite edit_packet.c untrunc_packet use after free (Issue 970)
A vulnerability was found in appneta tcpreplay up to 4.5.2-beta2. It has been declared as problematic. The impacted element is the function untrunc_packet of the file src/tcpedit/edit_packet.c of the component tcprewrite. Executing…
A vulnerability was found in appneta tcpreplay up to 4.5.2-beta2. It has been declared as problematic. The impacted element is the function untrunc_packet of the file src/tcpedit/edit_packet.c of the component tcprewrite. Executing manipulation can lead to use after free.
This vulnerability is handled as CVE-2025-9157. It is possible to launch the attack on the local host. Additionally, an exploit exists.
Applying a patch is advised to resolve this issue.
Verschlüsselung im Ruhezustand & Unveränderbare SIEM-Logs
Geschützt (KMS Envelope Encryption)
Angreifer penetrieren Perimeter und WAF ungehindert. Schicht 3 (Micro-Segmentierung & Port-Drop) bildet die entscheidende Stop-Linie zur Schadenseindämmung.
3. Compliance, SLA & Vendor Adherence
⏱️
EU NIS2 / ISO 27001 Remediation SLA Tracker CVE-2025-9157
BREACHED_OVERDUE
Richtlinie: NIS2 Standard Remediation (720h Frist)Deadline: 18.09.2025 20:02 UTC
Analyse für CVE-2025-9157 auf Basis von Live-CTI (ENISA EUVD): CVSS 0.0 · EPSS 0.0% · CISA KEV: nein. Handlungsableitung aus den verlinkten Hersteller-Quellen.
🛡️ Angriffsfläche & Exposure
Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.
⚡ Empfohlene Sofortmaßnahmen
1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
🔗 Verwandte Schwachstellen (gleicher Hersteller)
CVE-2024-3024CVE-2024-3024 | A vulnerability was found in appneta tcpreplay up to 4.4.4. It has been classified as problematic. This affects the function get_layer4_v6 of the file /tcpreplay/src/common/get.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-258333 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not
CVSS 5.3
CVE-2025-9649CVE-2025-9649 | A security vulnerability has been detected in appneta tcpreplay 4.5.1. Impacted is the function calc_sleep_time of the file send_packets.c. Such manipulation leads to divide by zero. An attack has to be approached locally. The exploit has been disclosed publicly and may be used. Upgrading to version 4.5.3-beta3 is recommended to address this issue. It is advisable to upgrade the affected component. The vendor confirms in a GitHub issue reply: "Was able to repr
CVSS 4.8
CVE-2025-9386CVE-2025-9386 | A vulnerability has been found in appneta tcpreplay up to 4.5.1. The impacted element is the function get_l2len_protocol of the file get.c of the component tcprewrite. Such manipulation leads to use after free. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. Upgrading to version 4.5.2-beta3 is sufficient to resolve this issue. You should upgrade the affected component.
CVSS 4.8
Synthetische RAG-Antwort
HAND-OFF
Auf Smartphone übergeben (CVE-2025-9157)
Scannen Sie den QR-Code mit der Smartphone-Kamera für sofortigen mobilen Zugriff: