CVE-2024-43167

CVSS V2 None CVSS V3 None
Description
A NULL pointer dereference flaw was found in the ub_ctx_set_fwd function in Unbound. This issue could allow an attacker who can invoke specific sequences of API calls to cause a segmentation fault. When certain API functions such as ub_ctx_set_fwd and ub_ctx_resolvconf are called in a particular order, the program attempts to read from a NULL pointer, leading to a crash. This issue can result in a denial of service by causing the application to terminate unexpectedly.
Overview
  • CVE ID
  • CVE-2024-43167
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-08-08T20:24:49.932Z
  • Last Modified Date
  • 2024-08-08T20:24:49.932Z
History
Created Old Value New Value Data Type Notes
2024-08-09 13:15:49 Added to TrackCVE