PT-2024-20313 · Robdns · Robdns
Ghosto
·
Published
2024-06-06
·
Updated
2024-08-23
·
CVE-2024-24194
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
robdns version d76d2e6
Description
The issue is related to a NULL pointer dereference via the
item->tokens component at /src/conf-parse.c. This occurs in robdns commit d76d2e6.Recommendations
For version d76d2e6, consider applying a patch to fix the NULL pointer dereference issue. As a temporary workaround, consider restricting access to the
/src/conf-parse.c component until a patch is available. Avoid using the item->tokens component in the affected configuration parsing functionality until the issue is resolved.Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Robdns