Back to search

CVE-2011-4315

MEDIUM
6.8NVD

Heap-based buffer overflow in compression-pointer processing in core/ngx_resolver.c in nginx before 1.0.10 allows remote resolvers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long response.

CVSS v2.0 Score

6.8
/ 10.0
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P

Information

Published
8 déc. 2011
Updated
11 avr. 2025
Status
Deferred
Source
secalert@redhat.com

Affected products

Versions : 1.0.10, 1.1.7
fedoraproject fedora
Versions : 16
suse studio
Versions : 1.2
suse studio onsite
Versions : 1.2
suse webyast
Versions : 1.2

Weaknesses (CWE)

CWE-787

Similar CVEs

Other vulnerabilities of type CWE-787

Loading…

Monitor your products

Get automatic alerts for every new CVE affecting your equipment.

Enable monitoring