First published: Tue Jul 11 2023(Updated: )
iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.
Credit: CVE-2023-38403 CVE-2023-38403 cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Es Iperf3 | <3.14 | |
Linux Linux kernel | ||
Debian Debian Linux | =10.0 | |
Fedoraproject Fedora | =37 | |
Fedoraproject Fedora | =38 | |
Apple macOS Ventura | <13.6.1 | 13.6.1 |
All of | ||
Es Iperf3 | <3.14 | |
Linux Linux kernel | ||
NetApp ONTAP Select Deploy administration utility | ||
NetApp Clustered Data ONTAP | =9.0 | |
Apple macOS | <13.6.1 | |
Apple macOS | =14.0 | |
ubuntu/iperf3 | <3.1.3-1ubuntu0.1~ | 3.1.3-1ubuntu0.1~ |
ubuntu/iperf3 | <3.7-3ubuntu0.1~ | 3.7-3ubuntu0.1~ |
ubuntu/iperf3 | <3.9-1+ | 3.9-1+ |
ubuntu/iperf3 | <3.12-1+ | 3.12-1+ |
ubuntu/iperf3 | <3.0.11-1ubuntu0.1~ | 3.0.11-1ubuntu0.1~ |
redhat/iperf | <3.14 | 3.14 |
debian/iperf3 | <=3.9-1<=3.13-2 | 3.9-1+deb11u1 3.12-1+deb12u1 3.14-1 |
Apple macOS Sonoma | <14.1 | 14.1 |
debian/iperf3 | <=3.6-2 | 3.6-2+deb10u1 3.9-1+deb11u1 3.12-1+deb12u1 3.16-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-38403.
The title of the vulnerability is 'iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.'
The affected software is iperf3.
This vulnerability can be exploited by peers through a crafted length field, leading to integer overflow and heap corruption.
The severity of CVE-2023-38403 is high with a severity value of 5.5.
To fix this vulnerability, update iperf3 to version 3.14 or apply the recommended patches.