Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-9430

Опубликовано: 05 июн. 2017
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Средний

Описание

Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dnstracer_project:dnstracer:*:*:*:*:*:*:*:*
Версия до 1.9 (включая)

EPSS

Процентиль: 95%
0.16467
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.

CVSS3: 9.8
debian
больше 8 лет назад

Stack-based buffer overflow in dnstracer through 1.9 allows attackers ...

CVSS3: 9.8
github
больше 3 лет назад

Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.

EPSS

Процентиль: 95%
0.16467
Средний

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119