Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
This update for iperf fixes the following issues:
* update to 3.15 (bsc#1215662, ESNET-SECADV-2023-0002):
* Several bugs that could allow the iperf3 server to hang waiting for input on
the control connection has been fixed (ESnet Software Security Advisory
ESNET-SECADV-2023-0002)
* A bug that caused garbled output with UDP tests on 32-bit hosts has been
fixed (PR #1554, PR #1556). This bug was introduced in iperf-3.14.
* A bug in counting UDP messages has been fixed
* update to 3.14 (bsc#1213430, CVE-2023-38403):
* fixes a memory allocation hazard that allowed a remote user to crash an
iperf3 process
* see https://downloads.es.net/pub/iperf/esnet-secadv-2023-0001.txt.asc
* update to 3.13:
* Added missing bind_dev getter and setter.
* a fix for A resource leak bug in function iperf_create_pidfile (#1443)
* doc: Fix copy-and-paste error leading to wrong error message
* Fix crash on rcv-timeout with JSON logfile
* update to 3.12:
*...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.4
zypper in -t patch openSUSE-SLE-15.4-2023-3887=1
* openSUSE Leap 15.5
zypper in -t patch openSUSE-SLE-15.5-2023-3887=1
* SUSE Package Hub 15 15-SP4
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-3887=1
* SUSE Package Hub 15 15-SP5
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-3887=1
* SUSE Enterprise Storage 7.1
zypper in -t patch SUSE-Storage-7.1-2023-3887=1
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.15-150000.3.6.1
* libiperf0-3.15-150000.3.6.1
* iperf-devel-3.15-150000.3.6.1
* libiperf0-debuginfo-3.15-150000.3.6.1
* iperf-debugsource-3.15-150000.3.6.1
* iperf-3.15-150000.3.6.1
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.15-150000.3.6.1
* libiperf0-3.15-150000.3.6.1
* iperf-devel-3.15-150000.3.6.1
* libiperf0-debuginfo-3.15-150000.3.6.1
* iperf-debugsource-3.15-150000.3.6.1
* iperf-3.15-150000.3.6.1
* SUSE Package Hub 15 15-SP4 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.15-150000.3.6.1
* libiperf0-3.15-150000.3.6.1
* iperf-devel-3.15-150000.3.6.1
* libiperf0-debuginfo-3.15-150000.3.6.1
* iperf-debugsource-3.15-150000.3.6.1
* iperf-3.15-150000.3.6.1
* SUSE Package Hub 15 15-SP5 (aarch64 ppc64le s390x x86_64)
* iperf-debuginfo-3.15-150000.3.6.1
* libiperf0-3.15-150000.3.6.1
* iperf-devel-3.15-150000.3.6.1
* libiperf0-debuginfo-3.15-150000.3.6.1
* iperf-debugsource-3.15-150000.3.6.1
*...
Read the Full Advisory* #1215662
## References:
* https://bugzilla.suse.com/show_bug.cgi?id=1215662
Get the latest Linux and open source security news straight to your inbox.