The function dns_copy_qname in dns_pack.c performs performs a memcpy operation with an untrusted field and does not check if the source buffer is large enough to contain the copied data.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 25 Feb 2025 07:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The function dns_copy_qname in dns_pack.c performs performs a memcpy operation with an untrusted field and does not check if the source buffer is large enough to contain the copied data. | |
Title | Out of bounds read in dns_copy_qname | |
Weaknesses | CWE-125 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: zephyr
Published: 2025-02-25T07:22:35.703Z
Updated: 2025-02-28T17:02:37.541Z
Reserved: 2025-02-25T06:02:31.547Z
Link: CVE-2025-1675

Updated: 2025-02-28T17:02:32.900Z

Status : Received
Published: 2025-02-25T08:15:30.020
Modified: 2025-02-25T08:15:30.020
Link: CVE-2025-1675

No data.