Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-83p9-mcpm-374v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.4

Описание

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

EPSS

Процентиль: 99%
0.73166
Высокий

9.4 Critical

CVSS3

Дефекты

CWE-193

Связанные уязвимости

CVSS3: 7.7
ubuntu
больше 4 лет назад

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

CVSS3: 8.1
redhat
больше 4 лет назад

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

CVSS3: 7.7
nvd
больше 4 лет назад

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

CVSS3: 7.7
msrc
больше 4 лет назад

A security issue in nginx resolver was identified which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite resulting in worker process crash or potential other impact.

CVSS3: 7.7
debian
больше 4 лет назад

A security issue in nginx resolver was identified, which might allow a ...

EPSS

Процентиль: 99%
0.73166
Высокий

9.4 Critical

CVSS3

Дефекты

CWE-193