imPC@ndo IT

Tracker / CVE-2011-4315

CVE-2011-4315

Medium 6.8

Heap-based buffer overflow in compression-pointer processing in core/ngx_resolver.c in nginx before 1.0.10 allows remote resolvers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long response.

Affected products and versions

f5 nginx · 0.6.18 → 1.0.10
f5 nginx · 1.1.0 → 1.1.7
fedoraproject fedora
suse studio
suse studio_onsite
suse webyast

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References