Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30566
HistoryMay 20, 2021 - 3:28 p.m.

Arbitrary Code Execution

2021-05-2015:28:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
23

0.007 Low

EPSS

Percentile

80.7%

unbound is vulnerable to arbitrary code execution. The vulnerability exists through an integer overflow in a size calculation in respip/respip.c. A flaw was found in unbound. An integer overflow in ub_packed_rrset_key function may lead to a buffer overflow of the allocated buffer if the size can be controlled by an attacker.