AVG-214 log
| Package | libevent |
| Status | Fixed |
| Severity | Low |
| Type | denial of service |
| Affected | 2.0.22-2 |
| Fixed | 2.0.22-3 |
| Current | 2.1.12-4 [core] |
| Ticket | None |
| Created | Wed Mar 15 16:55:52 2017 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2016-10197 | Low | Yes | Denial of service | The search_make_new function in evdns.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (out-of-bounds read) via an empty hostname. |
| References |
|---|
https://github.com/libevent/libevent/commit/ec65c42052d95d2c23d1d837136d1cf1d9ecef9e https://github.com/libevent/libevent/issues/332 |