Debian Security Update DSA-4954 c-ares - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,938
Reaction score
80
Credits
-1,257
Philipp Jeitner and Haya Shulman discovered a flaw in c-ares, a library that performs DNS requests and name resolution asynchronously. Missing input validation of hostnames returned by DNS servers can lead to output of wrong hostnames (leading to Domain Hijacking).

Continue reading...
 


Follow Linux.org

Members online


Latest posts

Top