Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9jcx-pr2f-qvq5

Опубликовано: 18 мая 2021
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

miekg/dns parsing error leads to nil pointer dereference and DoS

An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() parsing error causes a segmentation violation, leading to denial of service.

Пакеты

Наименование

github.com/miekg/dns

go
Затронутые версииВерсия исправления

< 1.0.10

1.0.10

EPSS

Процентиль: 76%
0.0176
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() parsing error causes a segmentation violation, leading to denial of service.

CVSS3: 7.5
redhat
больше 7 лет назад

An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() parsing error causes a segmentation violation, leading to denial of service.

CVSS3: 7.5
nvd
больше 7 лет назад

An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() parsing error causes a segmentation violation, leading to denial of service.

EPSS

Процентиль: 76%
0.0176
Низкий

7.5 High

CVSS3

Дефекты

CWE-400