Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-2642

Опубликовано: 22 июн. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-2642: unbound security update (IMPORTANT)

[1.6.6-5]

  • Fix incomplete amplifying-an-incoming-query patch
  • Resolves: rhbz#1846424

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

unbound

1.6.6-5.el7_8

unbound-devel

1.6.6-5.el7_8

unbound-libs

1.6.6-5.el7_8

unbound-python

1.6.6-5.el7_8

Oracle Linux x86_64

unbound

1.6.6-5.el7_8

unbound-devel

1.6.6-5.el7_8

unbound-libs

1.6.6-5.el7_8

unbound-python

1.6.6-5.el7_8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 5 лет назад

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.

CVSS3: 7.5
redhat
больше 5 лет назад

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.

CVSS3: 7.5
nvd
около 5 лет назад

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.

CVSS3: 7.5
debian
около 5 лет назад

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Ha ...

github
больше 3 лет назад

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.