Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2017-9454

Buffer overflow in the ares_parse_a_reply function in the embedded ares library in ReSIProcate before 1.12.0 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted DNS response.

  • Published: Aug 18, 2017
  • Updated: Apr 13, 2023
  • CVE: CVE-2017-9454
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
resiprocate / resiprocate - 1.10.2.x
resiprocate / resiprocate 1.11.0-alpha1 1.11.0-alpha1.x
resiprocate / resiprocate 1.11.0-alpha10 1.11.0-alpha10.x
resiprocate / resiprocate 1.11.0-alpha11 1.11.0-alpha11.x
resiprocate / resiprocate 1.11.0-alpha2 1.11.0-alpha2.x
resiprocate / resiprocate 1.11.0-alpha3 1.11.0-alpha3.x
resiprocate / resiprocate 1.11.0-alpha4 1.11.0-alpha4.x
resiprocate / resiprocate 1.11.0-alpha5 1.11.0-alpha5.x
resiprocate / resiprocate 1.11.0-alpha6 1.11.0-alpha6.x
resiprocate / resiprocate 1.11.0-alpha7 1.11.0-alpha7.x
resiprocate / resiprocate 1.11.0-alpha8 1.11.0-alpha8.x
resiprocate / resiprocate 1.11.0-alpha9 1.11.0-alpha9.x
resiprocate / resiprocate 1.11.0-beta1 1.11.0-beta1.x
resiprocate / resiprocate 1.11.0-beta2 1.11.0-beta2.x
resiprocate / resiprocate 1.11.0-beta3 1.11.0-beta3.x
resiprocate / resiprocate 1.11.0-beta4 1.11.0-beta4.x
resiprocate / resiprocate 1.11.0-beta5 1.11.0-beta5.x
resiprocate / resiprocate 1.12.0-alpha1 1.12.0-alpha1.x
resiprocate / resiprocate 1.12.0-beta1 1.12.0-beta1.x
resiprocate / resiprocate 1.12.0-beta2 1.12.0-beta2.x
resiprocate / resiprocate 1.12.0-beta3 1.12.0-beta3.x
resiprocate / resiprocate 1.12.0-beta4 1.12.0-beta4.x
resiprocate / resiprocate 1.12.0-beta5 1.12.0-beta5.x
resiprocate / resiprocate 1.12.0-beta6 1.12.0-beta6.x
resiprocate / resiprocate 1.12.0-beta7 1.12.0-beta7.x
resiprocate / resiprocate 1.12.0-beta8 1.12.0-beta8.x
resiprocate / resiprocate 1.12.0-beta9 1.12.0-beta9.x