[Debian] High CVE: CVE-2023-38403 iperf3: integer overflow and heap corruption
Bug #2029210 reported by
Yue Tao
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
StarlingX |
Fix Released
|
High
|
Wentao Zhang |
Bug Description
CVE-2023-38403: https:/
iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.
Base Score: High
References:
['iperf3_
CVE References
tags: |
added: stx.9.0 stx.security removed: stx.9 |
Changed in starlingx: | |
assignee: | nobody → Wentao Zhang (wzhang4) |
To post a comment you must log in.
Fix proposed to branch: master /review. opendev. org/c/starlingx /tools/ +/891931
Review: https:/