rpm package
almalinux/udica
pkg:rpm/almalinux/udica
Vulnerabilities (122)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-8608 | Med | 5.6 | < 0.2.1-2.module_el8.5.0+108+00865455 | 0.2.1-2.module_el8.5.0+108+00865455 | Feb 6, 2020 | In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code. | |
| CVE-2020-7039 | Med | 5.6 | < 0.2.1-2.module_el8.5.0+108+00865455 | 0.2.1-2.module_el8.5.0+108+00865455 | Jan 16, 2020 | tcp_emu in tcp_subr.c in libslirp 4.1.0, as used in QEMU 4.2.0, mismanages memory, as demonstrated by IRC DCC commands in EMU_IRC. This can cause a heap-based buffer overflow or other out-of-bounds access which can lead to a DoS or potential execute arbitrary code. |
- affected < 0.2.1-2.module_el8.5.0+108+00865455fixed 0.2.1-2.module_el8.5.0+108+00865455
In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
- affected < 0.2.1-2.module_el8.5.0+108+00865455fixed 0.2.1-2.module_el8.5.0+108+00865455
tcp_emu in tcp_subr.c in libslirp 4.1.0, as used in QEMU 4.2.0, mismanages memory, as demonstrated by IRC DCC commands in EMU_IRC. This can cause a heap-based buffer overflow or other out-of-bounds access which can lead to a DoS or potential execute arbitrary code.
Page 7 of 7