[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2020:0889-01 -- Redhat slirp4netns

ID: oval:org.secpod.oval:def:503558Date: (C)2020-03-20   (M)2022-11-23
Class: PATCHFamily: unix




The slirp4netns package contains user-mode networking for unprivileged network namespaces. It is required to enable networking for rootless containers. Security Fix: * QEMU: slirp: heap buffer overflow during packet reassembly * QEMU: slirp: OOB buffer access while emulating tcp protocols in tcp_emu * CVE-2020-8608 slirp4netns: QEMU: Slirp: potential OOB access due to unsafe snprintf usages * CVE-2019-15890 QEMU: Slirp: use-after-free during packet reassembly For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Red Hat Enterprise Linux 7
Product:
slirp4netns
Reference:
RHSA-2020:0889-01
CVE-2019-14378
CVE-2019-15890
CVE-2020-7039
CVE-2020-8608
CVE    4
CVE-2020-7039
CVE-2019-15890
CVE-2020-8608
CVE-2019-14378
...

© SecPod Technologies