CVE-2020-1983

A use after free vulnerability in ip_reass() in ip_input.c of libslirp 4.2.0 and prior releases allows crafted packets to cause a denial of service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:libslirp_project:libslirp:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*

Information

Published : 2020-04-22 20:15

Updated : 2020-07-26 14:15


NVD link : CVE-2020-1983

Mitre link : CVE-2020-1983


JSON object : View

Products Affected

opensuse

  • leap

fedoraproject

  • fedora

libslirp_project

  • libslirp
CWE
CWE-416

Use After Free