Логотип exploitDog
bind:CVE-2019-12290
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12290

Количество 8

Количество 8

ubuntu логотип

CVE-2019-12290

больше 6 лет назад

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-12290

больше 6 лет назад

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-12290

больше 6 лет назад

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specifi ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-5pjp-55fh-7frw

больше 3 лет назад

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2020-01339

около 6 лет назад

Уязвимость компонента RFC3490 библиотеки Libidn2, позволяющая нарушителю создать вредоносный домен, который соответствует целевому домену

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2613-1

около 6 лет назад

Security update for libidn2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2611-1

около 6 лет назад

Security update for libidn2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:3086-1

около 6 лет назад

Security update for libidn2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-12290

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-12290

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-12290

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specifi ...

CVSS3: 7.5
3%
Низкий
больше 6 лет назад
github логотип
GHSA-5pjp-55fh-7frw

GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.

CVSS3: 7.5
3%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-01339

Уязвимость компонента RFC3490 библиотеки Libidn2, позволяющая нарушителю создать вредоносный домен, который соответствует целевому домену

CVSS3: 7.5
3%
Низкий
около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2613-1

Security update for libidn2

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2611-1

Security update for libidn2

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:3086-1

Security update for libidn2

около 6 лет назад

Уязвимостей на страницу