Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-23017

Опубликовано: 25 мая 2021
Источник: redhat
CVSS3: 8.1
EPSS Высокий

Описание

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

A flaw was found in nginx. An off-by-one error while processing DNS responses allows a network attacker to write a dot character out of bounds in a heap allocated buffer which can allow overwriting the least significant byte of next heap chunk metadata likely leading to a remote code execution in certain circumstances. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8nginx:1.14/nginxWill not fix
Red Hat Enterprise Linux 9nginxNot affected
3scale API Management 2.11 on RHEL 73scale-amp2/3scale-rhel7-operatorFixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 73scale-amp2/3scale-rhel7-operator-metadataFixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 73scale-amp2/apicast-rhel7-operatorFixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 73scale-amp2/apicast-rhel7-operator-metadataFixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 73scale-amp2/memcached-rhel7FixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 73scale-amp2/system-rhel7FixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 83scale-amp2/apicast-gateway-rhel8FixedRHSA-2021:385114.10.2021
3scale API Management 2.11 on RHEL 83scale-amp2/backend-rhel8FixedRHSA-2021:385114.10.2021

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-193
https://bugzilla.redhat.com/show_bug.cgi?id=1963121nginx: Off-by-one in ngx_resolver_copy() when labels are followed by a pointer to a root domain name

EPSS

Процентиль: 99%
0.76458
Высокий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.7
ubuntu
около 4 лет назад

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

CVSS3: 7.7
nvd
около 4 лет назад

A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

CVSS3: 7.7
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.7
debian
около 4 лет назад

A security issue in nginx resolver was identified, which might allow a ...

suse-cvrf
почти 4 года назад

Security update for nginx

EPSS

Процентиль: 99%
0.76458
Высокий

8.1 High

CVSS3