GNU C Library是GNU社区的一种按照LGPL许可协议发布的开源免费的C语言编译程序。 GNU C Library 2.2及更新版本存在安全漏洞,该漏洞源于在处理DNS响应中的LOC、CERT、TKEY或TSIG记录时,函数ns_printrrf、ns_printrr和fp_nquery未能验证RDATA内容与RDATA长度,可能导致攻击者制作DNS响应,导致目标应用程序崩溃或读取未初始化内存。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The GNU C Library | glibc | 2.0.1≤ 2.43 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The GNU C Library | glibc | 2.0.1 ~ 2.43 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet