In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
References
Configurations
History
No history.
Information
Published : 2020-02-06 17:15
Updated : 2024-02-04 20:39
NVD link : CVE-2020-8608
Mitre link : CVE-2020-8608
CVE.ORG link : CVE-2020-8608
JSON object : View
Products Affected
debian
- debian_linux
libslirp_project
- libslirp
opensuse
- leap
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')