CVE-2020-1983
22.04.2020, 20:15
A use after free vulnerability in ip_reass() in ip_input.c of libslirp 4.2.0 and prior releases allows crafted packets to cause a denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
libslirp_project | libslirp | 𝑥 ≤ 4.2.0 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
opensuse | leap | 15.1 |
canonical | ubuntu_linux | 16.04 |
canonical | ubuntu_linux | 18.04 |
canonical | ubuntu_linux | 19.10 |
canonical | ubuntu_linux | 20.04 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
libslirp |
| ||||||||||||
qemu |
| ||||||||||||
slirp4netns |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
libslirp |
| ||||||||||||||||||||||||||
qemu |
| ||||||||||||||||||||||||||
qemu-kvm |
| ||||||||||||||||||||||||||
slirp4netns |
|
Common Weakness Enumeration
References