The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 7.3 | High | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
| Product | Vendor | Version |
|---|---|---|
| glibc | The GNU C Library | P9,Honor 6 Versions before EVA-AL10C00B192,Versions before H60-L02_6.10.1 |