Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string, which allows a possible arbitrary length stack overflow. This issue may cause a denial of service or a limited impact on confidentiality and integrity.
CVSS Information
N/A
Vulnerability Type
输入验证不恰当
Vulnerability Title
c-ares 输入验证错误漏洞
Vulnerability Description
c-ares是c-ares个人开发者的一个用于异步 DNS 请求的 C 库。 c-ares存在安全漏洞,该漏洞源于缺少对输入字符串有效性的检查,攻击者利用该漏洞可能导致任意长度的堆栈溢出,从而导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A