CVE-2023-7256Double Free in Libpcap

Severity
4.4MEDIUMNVD
CNA9.8OSV9.8CISA9.8
EPSS
0.0%
top 97.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 31

Description

In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly freeaddrinfo(), but does not clearly indicate to the caller function whether freeaddrinfo() still remains to be called after the function returns. This makes it possible in some scenarios that both the function and its caller call freeaddrinfo() for the same allocated memory block. A similar problem was reported in Apple libpcap, to which Apple assign

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:HExploitability: 0.8 | Impact: 3.6

Affected Packages3 packages

NVDtcpdump/libpcap< 1.10.5
Debiantcpdump/libpcap< 1.10.5-1+1
CVEListV5the_tcpdump_group/libpcap1.10.x1.10.4+2

Patches

🔴Vulnerability Details

3
GHSA
GHSA-7m22-9mw3-j4pp: In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly fre2024-08-31
OSV
CVE-2023-7256: In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly fre2024-08-31
CVEList
Double-free in libpcap before 1.10.5 with remote packet capture support.2024-08-30

📋Vendor Advisories

4
Red Hat
libpcap: Double Free in libcap2024-08-31
Microsoft
Double-free in libpcap before 1.10.5 with remote packet capture support.2024-08-13
CISA
Nice Linear eMerge E3-Series OS Command Injection Vulnerability2024-03-25
Debian
CVE-2023-7256: libpcap - In affected libpcap versions during the setup of a remote packet capture the int...2023
CVE-2023-7256 — Double Free in Tcpdump Libpcap | cvebase