When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained from the zone file. When the memcpy is copied, the 0xfe - ldns_rdf_size(salt_rdf) byte data can be copied, causing heap overflow information leakage.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade ldns | Mar 21, 2024 | Jan 21, 2022 |
| Debian | — | Upgrade ldns | Feb 7, 2022 | Jan 21, 2022 |
| Huawei Euleros 2_0_sp3 | — | Upgrade ldns | May 25, 2022 | Jan 21, 2022 |
| Huawei Euleros 2_0_sp5 | — | Upgrade ldns | Apr 26, 2022 | Jan 21, 2022 |
| Huawei Euleros 2_0_sp8 | — | Upgrade ldns | Apr 26, 2022 | Jan 21, 2022 |
| Suse | — | Upgrade ldns-develUpgrade python3-ldnsUpgrade libldns2Upgrade ldnsUpgrade perl-DNS-LDNS | Mar 3, 2022 | Jan 21, 2022 |
| Ubuntu | — | Upgrade libldns2Upgrade libldns3 (Ubuntu Pro)Upgrade libldns1 (Ubuntu Pro)Upgrade libldns2 (Ubuntu Pro) | Feb 1, 2022 | Jan 21, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub