MGASA-2026-0021

Source
https://advisories.mageia.org/MGASA-2026-0021.html
Import Source
https://advisories.mageia.org/MGASA-2026-0021.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2026-0021
Related
Published
2026-01-27T18:20:27Z
Modified
2026-02-04T03:16:15.104259Z
Summary
Updated iperf packages fix security vulnerabilities
Details

In iperf before 3.19.1, iperfauth.c has an off-by-one error and resultant heap-based buffer overflow. (CVE-2025-54349) In iperf before 3.19.1, iperfauth.c has a Base64Decode assertion failure and application exit upon a malformed authentication attempt. (CVE-2025-54350)

References
Credits

Affected packages

Mageia:9 / iperf

Package

Name
iperf
Purl
pkg:rpm/mageia/iperf?arch=source&distro=mageia-9

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.18-1.1.mga9

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2026-0021.json"