Vulnerability CVE-2021-23017


Published: 2021-06-01

Description:
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

See advisories in our WLB2 database:
Topic
Author
Date
High
nginx 1.20.0 DNS Resolver Off-By-One Heap Write
Markus Vervier
31.05.2021
Med.
Nginx 1.20.0 Denial Of Service
Mohammed Alshehr...
12.07.2022

 References:
http://mailman.nginx.org/pipermail/nginx-announce/2021/000300.html
https://support.f5.com/csp/article/K12331123
,

Copyright 2024, cxsecurity.com

 

Back to Top