github.com
https://github.com/esnet/iperf/commit/969b7f70c447513e92c9798f22e82b40ebc53bf0 CVE-2025-54351
HIGH
Record summary
CVE-2025-54351 has a selected CVSS score of 8.9 (high).
Description
In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv).
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 4, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
iperf3Browse ES / iperf3Default status: unaffected | CVE List | Before 3.19.1 | affected |
References
3github.com
https://github.com/esnet/iperf/releases/tag/3.19.1 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-54351