CVE Database
/

CVE-2020-10030

Back to search

CVE-2020-10030

Published: May 19, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

An issue has been found in PowerDNS Recursor 4.1.0 up to and including 4.3.0. It allows an attacker (with enough privileges to change the system's hostname) to cause disclosure of uninitialized memory content via a stack-based out-of-bounds read. It only occurs on systems where gethostname() does not have '\0' termination of the returned string if the hostname is larger than the supplied buffer. (Linux systems are not affected because the buffer is always large enough. OpenBSD systems are not affected because the returned hostname always has '\0' termination.) Under some conditions, this issue can lead to the writing of one '\0' byte out-of-bounds on the stack, causing a denial of service or possibly arbitrary code execution.

VendorProductVersions

n/a

n/a

affected
n/a

References

openSUSE-SU-2020:0698
vendor-advisory
x_refsource_SUSE
FEDORA-2020-d9abb0c06d
vendor-advisory
x_refsource_FEDORA
FEDORA-2020-c0ff3df740
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now