[CLSA-2025:1764028726] iperf3: Fix of 2 CVEs
Type:
security
Severity:
Critical
Release date:
2025-11-24 23:58:51 UTC
Description:
- CVE-2025-54349: fix off-by-one error and heap-based buffer overflow in iperf_auth.c - CVE-2025-54350: prevent crash due to assertion failures on malformed authentication attempt in iperf_auth.c
Updated packages:
  • iperf3-3.9-10.el9_2.alma.tuxcare.els3.i686.rpm
    sha:e36234eb036a649befbec8a2b534b78d2192c86b77d8d1b9201b3936ed6df974
  • iperf3-3.9-10.el9_2.alma.tuxcare.els3.x86_64.rpm
    sha:39606b35b1a9344a45ae2f4e8dfa5e778076aca1dc7cb53a08de88711b4d011b
  • iperf3-devel-3.9-10.el9_2.alma.tuxcare.els3.x86_64.rpm
    sha:011225a9a4f8abecbed4fb4fdeaba580b3da6af8e4c631d700320bfe261a9a95
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.