Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-19861
Description:When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained from the zone file. When the memcpy is copied, the 0xfe - ldns_rdf_size(salt_rdf) byte data can be copied, causing heap overflow information leakage.
Test IDs: 1.3.6.1.4.1.25623.1.0.892910   1.3.6.1.4.1.25623.1.1.2.2022.1572   1.3.6.1.4.1.25623.1.1.2.2022.2567  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-19861
https://cwe.mitre.org/data/definitions/126.html
https://github.com/NLnetLabs/ldns/issues/51




© 1998-2025 E-Soft Inc. All rights reserved.