Логотип exploitDog
bind:CVE-2022-2526
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-2526

Количество 10

Количество 10

ubuntu логотип

CVE-2022-2526

почти 3 года назад

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2022-2526

почти 3 года назад

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2022-2526

почти 3 года назад

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2022-2526

почти 3 года назад

A use-after-free vulnerability was found in systemd. This issue occurs ...

CVSS3: 9.8
EPSS: Низкий
redos логотип

ROS-20240403-04

около 1 года назад

Уязвимость systemd

CVSS3: 9.8
EPSS: Низкий
rocky логотип

RLSA-2022:6206

почти 3 года назад

Important: systemd security update

EPSS: Низкий
github логотип

GHSA-f4r4-2gxf-88xj

почти 3 года назад

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
EPSS: Низкий
oracle-oval логотип

ELSA-2022-6206

почти 3 года назад

ELSA-2022-6206: systemd security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-6160

почти 3 года назад

ELSA-2022-6160: systemd security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2022-05168

почти 3 года назад

Уязвимости функций on_stream_io() dns_stream_complete() компонента resolved-dns-stream.c подсистемы инициализации и управления службами Systemd операционных систем Linux, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-2526

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2022-2526

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2022-2526

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
0%
Низкий
почти 3 года назад
debian логотип
CVE-2022-2526

A use-after-free vulnerability was found in systemd. This issue occurs ...

CVSS3: 9.8
0%
Низкий
почти 3 года назад
redos логотип
ROS-20240403-04

Уязвимость systemd

CVSS3: 9.8
0%
Низкий
около 1 года назад
rocky логотип
RLSA-2022:6206

Important: systemd security update

0%
Низкий
почти 3 года назад
github логотип
GHSA-f4r4-2gxf-88xj

A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the reference counting for the DnsStream object. Therefore, other functions and callbacks called can dereference the DNSStream object, causing the use-after-free when the reference is still used later.

CVSS3: 9.8
0%
Низкий
почти 3 года назад
oracle-oval логотип
ELSA-2022-6206

ELSA-2022-6206: systemd security update (IMPORTANT)

почти 3 года назад
oracle-oval логотип
ELSA-2022-6160

ELSA-2022-6160: systemd security update (IMPORTANT)

почти 3 года назад
fstec логотип
BDU:2022-05168

Уязвимости функций on_stream_io() dns_stream_complete() компонента resolved-dns-stream.c подсистемы инициализации и управления службами Systemd операционных систем Linux, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 9.6
почти 3 года назад

Уязвимостей на страницу