Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4032-1 | iperf3 security update |
EUVD |
EUVD-2024-23577 | iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario. |
Ubuntu USN |
USN-7970-1 | iperf3 vulnerabilities |
Mon, 03 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 26 Sep 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Es
Es iperf3 Netapp Netapp bootstrap Os Netapp hci Compute Node |
|
| CPEs | cpe:2.3:a:es:iperf3:*:*:*:*:*:*:*:* cpe:2.3:h:netapp:hci_compute_node:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Es
Es iperf3 Netapp Netapp bootstrap Os Netapp hci Compute Node |
Fri, 28 Feb 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 10 Feb 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-385 | |
| Metrics |
ssvc
|
Wed, 13 Nov 2024 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:enterprise_linux:9 |
Tue, 20 Aug 2024 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T20:36:55.154Z
Reserved: 2024-02-16T00:00:00.000Z
Link: CVE-2024-26306
Updated: 2025-11-03T20:36:55.154Z
Status : Modified
Published: 2024-05-14T15:08:51.197
Modified: 2025-11-03T21:16:07.653
Link: CVE-2024-26306
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN