Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-19331

Опубликовано: 16 дек. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 7.5

Описание

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

5.6.0-1
disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

needed

esm-apps/focal

released

3.2.1-3ubuntu2.2
esm-apps/jammy

not-affected

5.4.4-1
esm-apps/noble

not-affected

5.6.0-1
esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

Показывать по

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
около 6 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

CVSS3: 7.5
debian
около 6 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service ...

CVSS3: 7.5
github
больше 3 лет назад

knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such uncached message. For example, a few thousand A records can be squashed into one DNS message (limit is 64kB).

5 Medium

CVSS2

7.5 High

CVSS3