A security vulnerability has been discovered in ldns, a library and collection of utilities for DNS programming. . Package : ldns Version : 1.6.13-1+deb7u2 CVE ID : CVE-2017-1000231 Debian Bug : 882015 A security vulnerability has been discovered in ldns, a library and collection of utilities for DNS programming. CVE-2017-1000231 The generic parser contained a double-free vulnerability which resulted in an application crash with unspecified impacts and attack vectors. For Debian 7 "Wheezy", these problems have been fixed in version 1.6.13-1+deb7u2. We recommend that you upgrade your ldns packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance ldns to resolve a double-free flaw, maintaining reliability and safeguarding Debian 7 Wheezy installations.. Debian LTS, ldns security, double-free issue, dns programming, upgrade recommendation. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.