Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a denial of service (infinite loop) via a DNS response containing a label pointer that references its own offset.
Link | Tags |
---|---|
http://secunia.com/advisories/24181 | third party advisory vendor advisory |
http://monkey.org/~provos/libevent/ | |
http://www.vupen.com/english/advisories/2007/0647 | vdb entry |
http://www.securityfocus.com/bid/22606 | patch vdb entry |
http://osvdb.org/33228 | vdb entry |
http://securityreason.com/securityalert/2268 | third party advisory |
http://www.securityfocus.com/archive/1/460530/100/0/threaded | mailing list |