Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2022:0943-1

Опубликовано: 24 мар. 2022
Источник: suse-cvrf

Описание

Security update for slirp4netns

This update for slirp4netns fixes the following issues:

  • CVE-2020-29130: Fixed an invalid memory access while processing ARP packets (bsc#1179467).

Список пакетов

SUSE Enterprise Storage 7
slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Micro 5.0
slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Micro 5.1
slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Module for Containers 15 SP3
slirp4netns-0.4.7-3.15.1

Описание

slirp.c in libslirp through 4.3.1 has a buffer over-read because it tries to read a certain amount of header data even if that exceeds the total packet length.


Затронутые продукты
SUSE Enterprise Storage 7:slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Micro 5.0:slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Micro 5.1:slirp4netns-0.4.7-3.15.1
SUSE Linux Enterprise Module for Containers 15 SP3:slirp4netns-0.4.7-3.15.1

Ссылки
Уязвимость SUSE-SU-2022:0943-1