Описание
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
slirp4netns | fixed | 0.4.1-1 | package | |
slirp4netns | no-dsa | buster | package | |
qemu | fixed | 1:4.1-2 | package | |
qemu-kvm | removed | package |
Примечания
https://www.openwall.com/lists/oss-security/2019/09/06/3
https://gitlab.freedesktop.org/slirp/libslirp/commit/c59279437eda91841b9d26079c70b8a540d41204
1:4.1-2 switched to system libslirp, marking that version as fixed
https://github.com/rootless-containers/slirp4netns/security/advisories/GHSA-jx98-2j5v-w265
EPSS
Связанные уязвимости
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
Уязвимость функции ip_reass (ip_input.с) аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании
EPSS