Описание
Security update for libndp
This update for libndp fixes the following issues:
- CVE-2024-5564: Fixed buffer overflow in route information length field (bsc#1225771)
Список пакетов
SUSE Linux Enterprise Server 12 SP5
libndp0-1.6-4.5.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libndp0-1.6-4.5.1
Ссылки
- Link for SUSE-SU-2024:2541-1
- E-Mail link for SUSE-SU-2024:2541-1
- SUSE Security Ratings
- SUSE Bug 1225771
- SUSE CVE CVE-2024-5564 page
Описание
A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.
Затронутые продукты
SUSE Linux Enterprise Server 12 SP5:libndp0-1.6-4.5.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5:libndp0-1.6-4.5.1
Ссылки
- CVE-2024-5564
- SUSE Bug 1225771