Описание
NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-apps-legacy/xenial | released | 4.1.7-1ubuntu0.1~esm1 |
| esm-apps/bionic | released | 4.1.17-1ubuntu0.1~esm1 |
| esm-apps/focal | released | 4.1.26-1ubuntu0.1~esm1 |
| esm-apps/jammy | released | 4.3.9-1ubuntu0.1~esm1 |
| esm-apps/noble | released | 4.8.0-1ubuntu0.1~esm1 |
| esm-apps/resolute | released | 4.14.0-1ubuntu0.1~esm1 |
| jammy | needed | |
| noble | needed | |
| questing | ignored | end of life, was needed |
Показывать по
EPSS
8.1 High
CVSS3
Связанные уязвимости
NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.
NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.
NSD version 4.14.0 introduced a bug where a specially crafted APL RR, ...
NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the stack when the zone is written to disk, with a maximum of 111 attacker controlled bytes.
EPSS
8.1 High
CVSS3