Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 498
Alerts This Week
Warning Icon 1 498

Mageia: 2023-0271 Moderate: Iperf Integer Overflow Vulnerability Alert

mageia
Calendar Grey September 30, 2023
Scroller Mageia
Mageia 2023-0272 introduces a crucial patch for openssh, addressing buffer overflow and remote code execution vulnerabilities across multiple versions.
It was discovered that iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field (CVE-2023-38403)

Summary

It was discovered that iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field (CVE-2023-38403).

References

- https://bugs.mageia.org/show_bug.cgi?id=32120

- https://lists.debian.org/debian-security-announce/2023/msg00147.html

- https://www.cve.org/CVERecord?id=CVE-2023-38403

- https://www.cve.org/CVERecord?id=CVE-2023-38403

Resolution

SRPMS

- 8/core/iperf-3.14-1.mga8

- 9/core/iperf-3.14-1.mga9

Publication date: 30 Sep 2023
URL: https://advisories.mageia.org/MGASA-2023-0271.html
Type: security
CVE: CVE-2023-38403

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.