Upstream information
Description
Heap-based buffer overflow in compression-pointer processing in core/ngx_resolver.c in nginx before 1.0.10 allows remote resolvers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long response.NVD CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)
Novell/SUSE information
Novell Bugzilla entry: 731084 SUSE Security Advisories:- SUSE-SU-2011:1300-1, published Mon, 5 Dec 2011 18:08:33 +0100 (CET)
- openSUSE-SU-2012:0237-1, published Thu, 9 Feb 2012 19:10:57 +0100 (CET)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SUSE Studio Standard Edition 1.2 WebYaST 1.2 |
| slms1.2.x86-64 webyast12.ia64 webyast12.x86 studioonsite1.2.x86-64 webyast12.ppc webyast12.s390x webyast12.x86-64 SAT Patch Nr: 5464 |
| openSUSE 11.4 DEBUGINFO |
| |
| openSUSE 11.4 |
|
