Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 17

Количество 17

fstec логотип

BDU:2026-10480

3 месяца назад

Уязвимость функции ns_printrrf, ns_printrr и fp_nquery системной библиотеки GNU C Library, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2026-6238

3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-6238

3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-6238

3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-6238

3 месяца назад

Buffer overread in ns_printrrf with corrupted RDATA field

EPSS: Низкий
debian логотип

CVE-2026-6238

3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the ...

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260708-73-0038

23 дня назад

Уязвимость glibc

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-h8wx-jcwq-g3cp

3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing LOC, CERT, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21228-1

27 дней назад

Security update for glibc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3030-1

16 дней назад

Security update for glibc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3029-1

16 дней назад

Security update for glibc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2987-1

16 дней назад

Security update for glibc

EPSS: Низкий
rocky логотип

RLSA-2026:42952

8 дней назад

Moderate: glibc security update

EPSS: Низкий
rocky логотип

RLSA-2026:42733

9 дней назад

Moderate: glibc security update

EPSS: Низкий
rocky логотип

RLSA-2026:42694

8 дней назад

Moderate: glibc security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-42952

9 дней назад

ELSA-2026-42952: glibc security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-42733

8 дней назад

ELSA-2026-42733: glibc security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-10480

Уязвимость функции ns_printrrf, ns_printrr и fp_nquery системной библиотеки GNU C Library, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-6238

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-6238

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6238

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-6238

Buffer overread in ns_printrrf with corrupted RDATA field

0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6238

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the ...

CVSS3: 6.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260708-73-0038

Уязвимость glibc

CVSS3: 6.5
0%
Низкий
23 дня назад
github логотип
GHSA-h8wx-jcwq-g3cp

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to validate the RDATA content against the RDATA length in a DNS response when processing LOC, CERT, TKEY or TSIG records, which may allow an attacker to craft a DNS response, causing a target application to crash or read uninitialized memory. These functions are for application debugging only and hence not in the path of code executed by the DNS resolver. Further, they have been deprecated since version 2.34 and should not be used by any new applications. Applications should consider porting away from these interfaces since they may be removed in future versions.

CVSS3: 6.5
0%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21228-1

Security update for glibc

27 дней назад
suse-cvrf логотип
SUSE-SU-2026:3030-1

Security update for glibc

16 дней назад
suse-cvrf логотип
SUSE-SU-2026:3029-1

Security update for glibc

16 дней назад
suse-cvrf логотип
SUSE-SU-2026:2987-1

Security update for glibc

16 дней назад
rocky логотип
RLSA-2026:42952

Moderate: glibc security update

8 дней назад
rocky логотип
RLSA-2026:42733

Moderate: glibc security update

9 дней назад
rocky логотип
RLSA-2026:42694

Moderate: glibc security update

8 дней назад
oracle-oval логотип
ELSA-2026-42952

ELSA-2026-42952: glibc security update (MODERATE)

9 дней назад
oracle-oval логотип
ELSA-2026-42733

ELSA-2026-42733: glibc security update (MODERATE)

8 дней назад

Уязвимостей на страницу