445
VMScore

CVE-2020-6079

Published: 24/03/2020 Updated: 22/04/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service condition via resource exhaustion. An attacker can send one mDNS message repeatedly to trigger this vulnerability through decoding of the domain name performed by rr_decode.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

videolabs libmicrodns 0.1.0

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Multiple security issues were discovered in the microdns plugin of the VLC media player, which could result in denial of service or potentially the execution of arbitrary code via malicious mDNS packets For the oldstable distribution (stretch), these problems have been fixed in version 3010-0+deb9u1 This update disables the microdns plugin For ...
Severity Unknown Remote Unknown Type Unknown Description AVG-1136 libmicrodns 010-1 Medium Vulnerable ...