In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Iperf3 | Es | 3.2 (including) | 3.19.1 (excluding) |
| Red Hat Enterprise Linux 10 | RedHat | iperf3-0:3.17.1-5.el10_1 | * |
| Red Hat Enterprise Linux 8 | RedHat | iperf3-0:3.5-12.el8_10 | * |
| Red Hat Enterprise Linux 9 | RedHat | iperf3-0:3.9-14.el9_7.1 | * |
| Iperf3 | Ubuntu | esm-apps/focal | * |
| Iperf3 | Ubuntu | esm-apps/jammy | * |
| Iperf3 | Ubuntu | esm-apps/noble | * |
| Iperf3 | Ubuntu | jammy | * |
| Iperf3 | Ubuntu | noble | * |
| Iperf3 | Ubuntu | plucky | * |
| Iperf3 | Ubuntu | questing | * |
| Iperf3 | Ubuntu | upstream | * |