Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU libidn2 输入验证错误漏洞
Vulnerability Description
GNU libidn2是一款支持对国际化域名进行编码和解码的库。 GNU libidn2 2.2.0之前版本中存在安全漏洞。攻击者可利用该漏洞伪造任意域名。
CVSS Information
N/A
Vulnerability Type
N/A