Skip to content

CVE-2020-1983 use-after-free (libslirp)

Moderate
AkihiroSuda published GHSA-43x4-h9r2-cv5r Apr 24, 2020

Package

libslirp, slirp4netns

Affected versions

libslirp < 4.3.0, slirp4netns < 0.4.5

Patched versions

libslirp 4.3.0, slirp4netns 0.4.5

Description

https://security-tracker.debian.org/tracker/CVE-2020-1983

A use after free vulnerability in ip_reass() in ip_input.c of libslirp ...

https://gitlab.freedesktop.org/slirp/libslirp/-/issues/20

Fixed in libslirp v4.3.0.

slirp4netns v1.0.X (dynamically linked with libslirp)

Run slirp4netns --version to show the libslirp version linked with your slirp4netns binary.

$ slirp4netns --version
slirp4netns version 1.0.0
commit: a3be729152a33e692cd28b52f664defbf2e7810a
libslirp: 4.3.0

If your libslirp version is >= 4.3.0, you are not affected.
Otherwise you need to update libslirp to v4.3.0, but no need to update slirp4netns.

slirp4netns v0.4.X (statically linked with libslirp)

Fixed in slirp4netns v0.4.5. Statically linked with libslirp v4.3.0.
a52e0fe

Severity

Moderate

CVE ID

CVE-2020-1983

Weaknesses

No CWEs