rpm package
suse/iperf&distro=SUSE Linux Enterprise Module for Package Hub 15 SP5
pkg:rpm/suse/iperf&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP5
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-26306 | Med | 5.9 | < 3.17.1-150000.3.9.1 | 3.17.1-150000.3.9.1 | May 14, 2024 | iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large | |
| CVE-2023-38403 | Hig | 7.5 | < 3.5-150000.3.3.1 | 3.5-150000.3.3.1 | Jul 17, 2023 | iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field. |
- affected < 3.17.1-150000.3.9.1fixed 3.17.1-150000.3.9.1
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large
- affected < 3.5-150000.3.3.1fixed 3.5-150000.3.3.1
iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.