Описание
dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 0.4.dfsg-3 |
| feisty | DNE | |
| gutsy | DNE | |
| hardy | ignored | end of life |
| intrepid | not-affected | 0.4.dfsg-3 |
| jaunty | not-affected | 0.4.dfsg-3 |
| karmic | not-affected | 0.4.dfsg-3 |
| lucid | not-affected | 0.4.dfsg-3 |
| maverick | not-affected | 0.4.dfsg-3 |
Показывать по
Ссылки на источники
EPSS
10 Critical
CVSS2
Связанные уязвимости
dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.
dns2tcp before 0.4.1 does not properly handle negative values in a cer ...
dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.
EPSS
10 Critical
CVSS2