[USN-4638-1] c-ares vulnerability
Severity
High
Affected Packages
2
CVEs
1
c-ares could be made to denial of service if it received a specially crafted DNS request.
It was discovered that c-ares incorrectly handled certain DNS requests.
An attacker could possibly use this issue to cause a denial of service.
Package | Affected Version |
---|---|
pkg:deb/ubuntu/libc-ares2?distro=groovy | < 1.16.1-1ubuntu0.1 |
pkg:deb/ubuntu/libc-ares-dev?distro=groovy | < 1.16.1-1ubuntu0.1 |
- ID
- USN-4638-1
- Severity
- high
- Severity from
- CVE-2020-8277
- URL
- https://ubuntu.com/security/notices/USN-4638-1
- Published
-
2020-11-19T12:46:33
(3 years ago) - Modified
-
2020-11-19T12:46:33
(3 years ago) - Other Advisories
-
- ALPINE:CVE-2020-8277
- ALSA-2020:5499
- ALSA-2021:0551
- ASA-202011-18
- ELSA-2020-5499
- ELSA-2021-0551
- FEDORA-2020-307e873389
- FEDORA-2020-7473744de1
- FEDORA-2021-afed2b904e
- FEDORA-2021-ee913722db
- FREEBSD:56BA4513-A1BE-11EB-9072-D4C9EF517024
- FREEBSD:AD792169-2AA4-11EB-AB71-0022489AD614
- GLSA-202012-11
- GLSA-202101-07
- MS:CVE-2020-8277
- openSUSE-SU-2020:2045-1
- openSUSE-SU-2020:2092-1
- openSUSE-SU-2021:0064-1
- openSUSE-SU-2021:0066-1
- RHSA-2020:5499
- RHSA-2021:0551
- RLSA-2020:5499
- RLSA-2021:0551
- SUSE-SU-2020:3478-1
- SUSE-SU-2020:3549-1
- SUSE-SU-2021:0061-1
- SUSE-SU-2021:0062-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:deb/ubuntu/libc-ares2?distro=groovy | ubuntu | libc-ares2 | < 1.16.1-1ubuntu0.1 | groovy | ||
Affected | pkg:deb/ubuntu/libc-ares-dev?distro=groovy | ubuntu | libc-ares-dev | < 1.16.1-1ubuntu0.1 | groovy |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |