Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-9185

Опубликовано: 14 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-9185: iperf3 security update (MODERATE)

[3.9-13]

  • Resolves: RHEL-29579 - vulnerable to marvin attack if the authentication option is used

[3.9-12]

  • Resolves: RHEL-39975 - possible denial of service

[3.9-11]

  • Related: #2223676 - bumping version for correct update path

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

iperf3

3.9-13.el9

Oracle Linux x86_64

iperf3

3.9-13.el9

Связанные CVE

Связанные уязвимости

rocky
около 1 месяца назад

Moderate: iperf3 security update

oracle-oval
12 месяцев назад

ELSA-2024-4241: iperf3 security update (MODERATE)

CVSS3: 5.3
ubuntu
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
redhat
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
nvd
больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.