Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path DNS spoofing attacks due to IP fragmentation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU C Library 安全漏洞
Vulnerability Description
GNU C Library(glibc,libc6)是一种按照LGPL许可协议发布的开源免费的C语言编译程序。 GNU C Library 2.26之前的版本中的DNS stub resolver存在安全漏洞。攻击者可利用该漏洞实施off-path DNS欺骗攻击。
CVSS Information
N/A
Vulnerability Type
N/A