Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Mageia 9: MGASA-2024-0225 Critical: Libndp Buffer Overflow Threat

mageia
Calendar Grey June 17, 2024
Dist Mageia Esm H88
Recent libndp updates in Mageia address a severe buffer overflow vulnerability caused by improperly formatted IPv6 packets.
A vulnerability was found in libndp

Summary

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

References

- https://bugs.mageia.org/show_bug.cgi?id=33304

- https://ubuntu.com/security/notices/USN-6830-1

- https://www.cve.org/CVERecord?id=CVE-2024-5564

Resolution

SRPMS

- 9/core/libndp-1.8-2.1.mga9

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 17 Jun 2024
URL: https://advisories.mageia.org/MGASA-2024-0225.html
Type: security
CVE: CVE-2024-5564

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here