In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
References
Configurations
Information
Published : 2020-02-06 09:15
Updated : 2021-02-13 19:50
NVD link : CVE-2020-8608
Mitre link : CVE-2020-8608
JSON object : View
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Products Affected
debian
- debian_linux
opensuse
- leap
libslirp_project
- libslirp