Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| svxlink | fixed | 26.05.1-1 | package | |
| svxlink | no-dsa | trixie | package |
Примечания
https://github.com/sm0svx/svxlink/security/advisories/GHSA-xmcv-mjpv-x46q
Связанные уязвимости
redhat
около 2 месяцев назад
A flaw was found in svxlink's audio decoders. A variable-length array on the stack is sized using an attacker-controlled encoded-frame length field received over the network. By sending a frame with an excessively large length value, a remote attacker can exhaust the stack, resulting in a denial of service.