Описание
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-apps/xenial | not-affected | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [2.0.5-1+deb7u2build0.14.04.1]] |
| precise | released | 1.1.22+dfsg-4+squeeze3ubuntu0.1 |
| trusty | released | 2.0.5-1+deb7u2build0.14.04.1 |
| trusty/esm | DNE | trusty was released [2.0.5-1+deb7u2build0.14.04.1] |
| upstream | released | 2.0.20-1 |
| vivid | ignored | end of life |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
7.8 High
CVSS2
8.6 High
CVSS3
Связанные уязвимости
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allow ...
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\032" (whitespace) character in a hostname.
7.8 High
CVSS2
8.6 High
CVSS3