Описание
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1.9.10-0ubuntu1 |
| esm-infra-legacy/trusty | released | 1.4.6-1ubuntu3.4 |
| esm-infra/xenial | released | 1.9.10-0ubuntu1 |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | released | 1.4.6-1ubuntu3.4 |
| trusty/esm | released | 1.4.6-1ubuntu3.4 |
| upstream | released | 1.9.10-1, 1.9.10, 1.8.1. |
| vivid | ignored | end of life |
| vivid/stable-phone-overlay | DNE |
Показывать по
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1 ...
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.
7.5 High
CVSS2
9.8 Critical
CVSS3