AVG-214 log

Package libevent
Status Fixed
Severity Low
Type denial of service
Affected 2.0.22-2
Fixed 2.0.22-3
Current 2.1.12-4 [core]
Ticket None
Created Wed Mar 15 16:55:52 2017
Issue Severity Remote Type Description
CVE-2016-10197 Low Yes Denial of service
The search_make_new function in evdns.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (out-of-bounds read) via an empty hostname.
References
https://github.com/libevent/libevent/commit/ec65c42052d95d2c23d1d837136d1cf1d9ecef9e
https://github.com/libevent/libevent/issues/332