Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21429-1

Опубликовано: 23 июл. 2026
Источник: suse-cvrf

Описание

Security update for net-tools

This update for net-tools fixes the following issue:

  • CVE-2024-58251: denial of service via terminal escape sequences (bsc#1254323).

Список пакетов

openSUSE Leap 16.0
net-tools-2.10-160000.4.1
net-tools-deprecated-2.10-160000.4.1
net-tools-lang-2.10-160000.4.1

Описание

In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim.


Затронутые продукты
openSUSE Leap 16.0:net-tools-2.10-160000.4.1
openSUSE Leap 16.0:net-tools-deprecated-2.10-160000.4.1
openSUSE Leap 16.0:net-tools-lang-2.10-160000.4.1

Ссылки