Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-4241

Опубликовано: 03 июл. 2024
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2024-4241: iperf3 security update (MODERATE)

[3.5-10]

  • Resolves: RHEL-29578 - vulnerable to marvin attack if the authentication option is used

[3.5-9]

  • Resolves: RHEL-17069 - possible denial of service

[3.5-8]

  • Related: #2222205 - bumping nvr for correct update path

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

iperf3

3.5-10.el8_10

Oracle Linux x86_64

iperf3

3.5-10.el8_10

Связанные CVE

Связанные уязвимости

rocky
около 1 месяца назад

Moderate: iperf3 security update

oracle-oval
7 месяцев назад

ELSA-2024-9185: iperf3 security update (MODERATE)

CVSS3: 5.3
ubuntu
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
redhat
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
nvd
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.