Vulnerabilities > CVE-2007-1030 - Denial Of Service vulnerability in Niels Provos Libevent 1.2/1.2A

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
niels-provos

Summary

Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a denial of service (infinite loop) via a DNS response containing a label pointer that references its own offset.

Vulnerable Configurations

Part Description Count
Application
Niels_Provos
2

Statements

contributorMark J Cox
lastmodified2008-04-04
organizationRed Hat
statementNot vulnerable. This issue did not affect versions of libevent as shipped with Red Hat Enterprise Linux 5.