CVE-2019-25040

Beschreibung:
Unbound before 1.9.5 allows an infinite loop via a compressed name in dname_pkt_copy.

CWE: CWE-835

CVSS-Bewertung
CVSS 2: MEDIUM – 5 (Version: 2.0)
CVSS 3: HIGH – 7.5 (Version: 3.1)

Links:

NVD – CVE-2019-25040
CVE – CVE-2019-25040

Link (max. 20) Quelle Tags
https://ostif.org/our-audit-of-unbound-dns-by-x41-d-sec-full-results/ MISC Patch Third Party Advisory
[debian-lts-announce] 20210506 [SECURITY] [DLA 2652-1] unbound1.9 security update MLIST Product Third Party Advisory
https://security.netapp.com/advisory/ntap-20210507-0007/ CONFIRM Third Party Advisory Third Party Advisory
https://www.zerodayinitiative.com/advisories/ZDI-21-509/ MISC Third Party Advisory VDB Entry

Quelle: NVD – CVE-2019-25040
Datum Veröffentlichung: 2021-04-27T06:15Z, Datum letzte Änderung: 2021-05-07T05:15Z