==========================================================================
Ubuntu Security Notice USN-4437-1
July 27, 2020
libslirp vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
– Ubuntu 20.04 LTS
Summary:
libslirp could be made to crash if it received specially crafted network
traffic.
Software Description:
– libslirp: None
Details:
Ziming Zhang and VictorV discovered that libslirp incorrectly handled
replying to certain ICMP echo requests. A remote attacker could possibly
use this issue to cause libslirp to crash, resulting in a denial of
service.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 20.04 LTS:
libslirp0 4.1.0-2ubuntu2.1
After a standard system update you need to reboot your computer to make
all the necessary changes.
References:
https://usn.ubuntu.com/4437-1
CVE-2020-10756
Package Information:
https://launchpad.net/ubuntu/+source/libslirp/4.1.0-2ubuntu2.1
—–BEGIN PGP SIGNATURE—–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=H+26
—–END PGP SIGNATURE—–
—