[ALSA-2026:61257] Important: iperf3 security update
Type:
security
Severity:
important
Release date:
2026-08-31
Description:
Iperf is a tool which can measure maximum TCP bandwidth and tune various parameters and UDP characteristics. Iperf reports bandwidth, delay jitter, and data-gram loss. Security Fix(es): * iperf3: iperf3 server accepts unbounded peer-controlled JSON parameters enabling remote denial of service via resource exhaustion (CVE-2026-71217) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 iperf3-3.5-12.el8_10.1.aarch64.rpm 00dbac7f7dd71eaed94823c4fb8f879514205d12d5d53fab8cdd1bf9076c17ce
i686 iperf3-3.5-12.el8_10.1.i686.rpm 40ffb5cf8f79137375bcff24c54fa8220b31290578e9a0b10daa29c27bc41790
ppc64le iperf3-3.5-12.el8_10.1.ppc64le.rpm fabdb58fc801e904a871d2f0611de1578493b12bd6300b63b8fc26f133d24c3e
s390x iperf3-3.5-12.el8_10.1.s390x.rpm 5233967e22c99071cccfcc9983bdd12a03a4518105cd0230eac470b803f3c15e
x86_64 iperf3-3.5-12.el8_10.1.x86_64.rpm 0f49efbfae1d0fe704124cc174cf26ac62e986ca5644f47af333ea4b26208b81
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.