A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://www.nlnetlabs.nl/bugs-script/show_bug.cgi?id=1257 | vendor advisory exploit |
http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00000.html | vendor advisory |