[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2023-1780 --- c-ares

ID: oval:org.secpod.oval:def:1601746Date: (C)2023-07-27   (M)2024-01-08
Class: PATCHFamily: unix




A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string, which allows a possible arbitrary length stack overflow. This issue may cause a denial of service or a limited impact on confidentiality and integrity

Platform:
Amazon Linux AMI
Product:
c-ares
Reference:
ALAS-2023-1780
CVE-2022-4904
CVE    1
CVE-2022-4904

© SecPod Technologies