This update for iperf fixes the following issues:
* CVE-2023-38403: Fixed integer overflow leading to heap buffer overflow
(bsc#1213430).
## Patch Instructions:
To install this SUSE Important update use the SUSE recommended installation
methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.4
zypper in -t patch openSUSE-SLE-15.4-2023-2987=1
* openSUSE Leap 15.5
zypper in -t patch openSUSE-SLE-15.5-2023-2987=1
* SUSE Package Hub 15 15-SP4
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-2987=1
* SUSE Package Hub 15 15-SP5
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-2987=1
* SUSE Enterprise Storage 7.1
zypper in -t patch SUSE-Storage-7.1-2023-2987=1
* SUSE Enterprise Storage 7
zypper in -t patch SUSE-Storage-7-2023-2987=1
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.5-150000.3.3.1
* libiperf0-debuginfo-3.5-150000.3.3.1
* iperf-3.5-150000.3.3.1
* iperf-devel-3.5-150000.3.3.1
* libiperf0-3.5-150000.3.3.1
* iperf-debugsource-3.5-150000.3.3.1
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.5-150000.3.3.1
* libiperf0-debuginfo-3.5-150000.3.3.1
* iperf-3.5-150000.3.3.1
* iperf-devel-3.5-150000.3.3.1
* libiperf0-3.5-150000.3.3.1
* iperf-debugsource-3.5-150000.3.3.1
* SUSE Package Hub 15 15-SP4 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.5-150000.3.3.1
* libiperf0-debuginfo-3.5-150000.3.3.1
* iperf-3.5-150000.3.3.1
* iperf-devel-3.5-150000.3.3.1
* libiperf0-3.5-150000.3.3.1
* iperf-debugsource-3.5-150000.3.3.1
* SUSE Package Hub 15 15-SP5 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.5-150000.3.3.1
* libiperf0-debuginfo-3.5-150000.3.3.1
* iperf-3.5-150000.3.3.1
* iperf-devel-3.5-150000.3.3.1
* libiperf0-3.5-150000.3.3.1
* iperf-debugsource-3.5-150000.3.3.1
* SUSE Enterprise...
Read the Full Advisory* #1213430
## References:
* https://www.suse.com/security/cve/CVE-2023-38403.html
* https://bugzilla.suse.com/show_bug.cgi?id=1213430
Get the latest Linux and open source security news straight to your inbox.