You are here
Home > Preporuke > Sigurnosni nedostatak programske biblioteke libslirp

Sigurnosni nedostatak programske biblioteke libslirp

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-4437-1
July 27, 2020

libslirp vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 20.04 LTS

Summary:

libslirp could be made to crash if it received specially crafted network
traffic.

Software Description:
– libslirp: None

Details:

Ziming Zhang and VictorV discovered that libslirp incorrectly handled
replying to certain ICMP echo requests. A remote attacker could possibly
use this issue to cause libslirp to crash, resulting in a denial of
service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS:
libslirp0 4.1.0-2ubuntu2.1

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
https://usn.ubuntu.com/4437-1
CVE-2020-10756

Package Information:
https://launchpad.net/ubuntu/+source/libslirp/4.1.0-2ubuntu2.1

—–BEGIN PGP SIGNATURE—–
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=H+26
—–END PGP SIGNATURE—–

AutorFilip Omazic
Cert idNCERT-REF-2020-07-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci jezgre Linux

Otkriveni su sigurnosni nedostaci jezgre Linux za operacijski sustav Ubuntu. Otkriveni nedostaci potencijalnim napadačima omogućuju izazivanje DoS stanja, izvršavanje proizvoljnog...

Close