Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Mageia: 2023-0271 Moderate: Iperf Integer Overflow Vulnerability Alert

mageia
Calendar Grey September 30, 2023
Dist Mageia Esm H88
Mageia 2023-0272 introduces a crucial patch for openssh, addressing buffer overflow and remote code execution vulnerabilities across multiple versions.
It was discovered that iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field (CVE-2023-38403)

Summary

It was discovered that iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field (CVE-2023-38403).

References

- https://bugs.mageia.org/show_bug.cgi?id=32120

- https://lists.debian.org/debian-security-announce/2023/msg00147.html

- https://www.cve.org/CVERecord?id=CVE-2023-38403

- https://www.cve.org/CVERecord?id=CVE-2023-38403

Resolution

SRPMS

- 8/core/iperf-3.14-1.mga8

- 9/core/iperf-3.14-1.mga9

Publication date: 30 Sep 2023
URL: https://advisories.mageia.org/MGASA-2023-0271.html
Type: security
CVE: CVE-2023-38403

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here