PT-2020-6961 · Libslirp+9 · Libslirp+9

Qiuhao Li

·

Published

2020-11-26

·

Updated

2023-03-22

·

CVE-2020-29130

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions libslirp versions 4.3.1 and earlier
Description The issue is related to a buffer over-read in the slirp.c component of the libslirp TCP-IP emulator. This occurs because the component attempts to read a certain amount of header data, even if it exceeds the total packet length. Exploitation of this issue could allow a remote attacker to access confidential data.
Recommendations For libslirp versions 4.3.1 and earlier, consider applying a patch or updating to a version where this issue is fixed, if available. As a temporary workaround, consider restricting access to the slirp.c component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Weakness Enumeration

Related Identifiers

ALSA-2021:1762
ALT-PU-2020-3501
ALT-PU-2022-3194
BDU:2024-01493
CESA-2021_1762
CVE-2020-29130
DLA-2560-1
DLA-3362-1
OPENSUSE-SU-2021:0600-1
OPENSUSE-SU-2021:1043-1
OPENSUSE-SU-2021:1942-1
OPENSUSE-SU-2021_0600-1
OPENSUSE-SU-2021_1043-1
OPENSUSE-SU-2021_1942-1
OPENSUSE-SU-2022:0943-1
OPENSUSE-SU-2022_0943-1
RHSA-2021:1762
RHSA-2021_1762
RLSA-2021:1762
SUSE-SU-2020:14578-1
SUSE-SU-2020:3880-1
SUSE-SU-2020:3913-1
SUSE-SU-2020:3914-1
SUSE-SU-2020:3945-1
SUSE-SU-2020_14578-1
SUSE-SU-2020_3880-1
SUSE-SU-2020_3913-1
SUSE-SU-2020_3914-1
SUSE-SU-2020_3945-1
SUSE-SU-2021:1240-1
SUSE-SU-2021:1241-1
SUSE-SU-2021:1242-1
SUSE-SU-2021:1243-1
SUSE-SU-2021:1244-1
SUSE-SU-2021:1245-1
SUSE-SU-2021:1305-1
SUSE-SU-2021:14704-1
SUSE-SU-2021:14706-1
SUSE-SU-2021:1829-1
SUSE-SU-2021:1837-1
SUSE-SU-2021:1893-1
SUSE-SU-2021:1894-1
SUSE-SU-2021:1895-1
SUSE-SU-2021:1918-1
SUSE-SU-2021:1942-1
SUSE-SU-2021:1947-1
SUSE-SU-2021_14704-1
SUSE-SU-2022:0943-1
SUSE-SU-2022:0943-2
SUSE-SU-2022_0943-1
SUSE-SU-2023:0870-1
USN-5009-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Red Hat
Rocky Linux
Suse
Ubuntu
Libslirp