Lucene search

K
oraclelinuxOracleLinuxELSA-2023-6635
HistoryNov 11, 2023 - 12:00 a.m.

c-ares security, bug fix, and enhancement update

2023-11-1100:00:00
linux.oracle.com
5
c-ares
security update
cves
enhancement
rhel 9.3

7.6 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

42.1%

[1.19.1-1]

  • Resolves: rhbz#2209564 - CVE-2023-31124 c-ares: AutoTools does not set CARES_RANDOM_FILE during cross compilation [rhel-9]
  • Resolves: rhbz#2209556 - CVE-2023-31130 c-ares: Buffer Underwrite in ares_inet_net_pton() [rhel-9]
  • Resolves: rhbz#2209550 - CVE-2023-31147 c-ares: Insufficient randomness in generation of DNS query IDs [rhel-9]
  • Resolves: rhbz#2209520 - CVE-2023-32067 c-ares: 0-byte UDP payload Denial of Service [rhel-9.3.0]
  • Resolves: rhbz#2210370 - Rebase c-ares for RHEL 9.3
    [1.17.1-6]
  • Resolves: rhbz#2170868 - c-ares: buffer overflow in config_sortlist() due to missing string length check [rhel-9]