Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-4636

Опубликовано: 18 июл. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-4636: libndp security update (IMPORTANT)

[1.8-6]

  • Validate route information option length

[1.8-5]

  • Convert the license tag to SPDX format Related: RHELMISC-1363

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libndp

1.8-6.el9_4

Oracle Linux x86_64

libndp

1.8-6.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
redhat
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
nvd
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 8.1
debian
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local maliciou ...