CVE-2020-1983
22.04.2020, 20:15
A use after free vulnerability in ip_reass() in ip_input.c of libslirp 4.2.0 and prior releases allows crafted packets to cause a denial of service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libslirp_project | libslirp | 𝑥 ≤ 4.2.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| opensuse | leap | 15.1 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.10 |
| canonical | ubuntu_linux | 20.04 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libslirp |
| ||||||||||||
| qemu |
| ||||||||||||
| slirp4netns |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libslirp |
| ||||||||||||||||||||||||||
| qemu |
| ||||||||||||||||||||||||||
| qemu-kvm |
| ||||||||||||||||||||||||||
| slirp4netns |
|
Common Weakness Enumeration
References