iperf3: security bump to version 3.1.3
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Thu, 9 Jun 2016 22:17:05 +0000 (19:17 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Thu, 9 Jun 2016 22:27:40 +0000 (00:27 +0200)
commit678db6ba60a3dc6665d99383e4e6ba2efd2ca2b7
tree0eaf797daf0b44958535096400f7cb23fdc9c006
parent0f60f4dde2e0a38ad87d2ebb136adb83f113f370
iperf3: security bump to version 3.1.3

Fixes:
ESNET-SECADV-2016-0001 - A malicious process can connect to an iperf3
server and, by sending a malformed message on the control channel,
corrupt the server process's heap area.  This can lead to a crash (and a
denial of service), or theoretically a remote code execution as the user
running the iperf3 server. A malicious iperf3 server could potentially
mount a similar attack on an iperf3 client.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/iperf3/iperf3.hash
package/iperf3/iperf3.mk