CVE-2010-0969Unbound vulnerability

CWE-3996 documents6 sources
Severity
5.0MEDIUMNVD
EPSS
1.4%
top 19.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 16
Latest updateMay 2

Description

Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debiannlnetlabs/unbound< 1.4.3-1+3
NVDnlnetlabs/unbound1.4.2+28

Patches

🔴Vulnerability Details

3
GHSA
GHSA-cmhx-v6j5-f49g: Unbound before 12022-05-02
CVEList
CVE-2010-0969: Unbound before 12010-03-16
OSV
CVE-2010-0969: Unbound before 12010-03-16

📋Vendor Advisories

2
Red Hat
Unbound: Denial of service on 64 bit platforms (v1.4.3)2010-03-11
Debian
CVE-2010-0969: unbound - Unbound before 1.4.3 does not properly align structures on 64-bit platforms, whi...2010
CVE-2010-0969 — Nlnetlabs Unbound vulnerability | cvebase