Back to search

CVE-2016-0742

HIGH
7.5NVD

The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference and worker process crash) via a crafted UDP DNS response.

CVSS v3.1 Score

7.5
/ 10.0
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Information

Published
15 févr. 2016
Updated
12 avr. 2025
Status
Deferred
Source
secalert@redhat.com

Affected products

Versions : 1.8.1, 1.9.10
canonical ubuntu linux
Versions : 14.04, 15.10
debian debian linux
Versions : 7.0, 8.0, 9.0
opensuse leap
Versions : 42.1
apple xcode
Versions : 13.0
redhat software collections
Versions : 1.0

Weaknesses (CWE)

CWE-476

Similar CVEs

Other vulnerabilities of type CWE-476

Loading…

Monitor your products

Get automatic alerts for every new CVE affecting your equipment.

Enable monitoring