Описание
Security update for slirp4netns
This update for slirp4netns fixes the following issues:
Security issue fixed:
- CVE-2020-1983: Fixed a use-after-free in ip_reass (bsc#1170940).
This update was imported from the SUSE:SLE-15-SP1:Update update project.
Список пакетов
openSUSE Leap 15.1
slirp4netns-0.4.5-lp151.2.9.1
Ссылки
- E-Mail link for openSUSE-SU-2020:0636-1
- SUSE Security Ratings
- SUSE Bug 1170940
- SUSE CVE CVE-2020-1983 page
Описание
A use after free vulnerability in ip_reass() in ip_input.c of libslirp 4.2.0 and prior releases allows crafted packets to cause a denial of service.
Затронутые продукты
openSUSE Leap 15.1:slirp4netns-0.4.5-lp151.2.9.1
Ссылки
- CVE-2020-1983
- SUSE Bug 1170940