Описание
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
Отчет
This issue did not affect the versions of ldns as shipped with Red Hat Enterprise Linux 6 and 7.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | ldns | Not affected | ||
Red Hat Enterprise Linux 7 | ldns | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1510993ldns: Memory corruption in ldns_str2rdf_long_str
EPSS
Процентиль: 65%
0.00494
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 7 лет назад
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
CVSS3: 9.8
nvd
больше 7 лет назад
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
CVSS3: 9.8
debian
больше 7 лет назад
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecifi ...
CVSS3: 9.8
github
около 3 лет назад
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
EPSS
Процентиль: 65%
0.00494
Низкий
5.9 Medium
CVSS3