Описание
systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question section.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| systemd | fixed | 233-8 | experimental | package |
| systemd | fixed | 232-24 | package | |
| systemd | not-affected | jessie | package | |
| systemd | not-affected | wheezy | package |
Примечания
https://github.com/systemd/systemd/pull/5998
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 8 лет назад
systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question section.
CVSS3: 5.3
redhat
больше 8 лет назад
systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question section.
CVSS3: 7.5
nvd
больше 8 лет назад
systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS response with an empty question section.