CVE-2007-1030: High severity Niels Provos libevent vulnerability
Published Feb 21, 2007
·Updated
Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a denial of service (infinite loop) via a DNS response containing a label pointer that references its own offset.
Affected Software
2 affected components
Niels Provos libevent=1.2
Niels Provos libevent=1.2a
Remediation
Patch Available
Event History
Feb 21, 2007
CVE Published
11:28 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1030?
CVE-2007-1030 has been rated as a moderate severity vulnerability causing denial of service.
2
How do I fix CVE-2007-1030?
To mitigate CVE-2007-1030, upgrade to a patched version of libevent that resolves this issue.
3
What impact does CVE-2007-1030 have on my system?
CVE-2007-1030 can cause your system to enter an infinite loop, leading to a denial of service.
4
Which versions of libevent are affected by CVE-2007-1030?
CVE-2007-1030 affects libevent versions 1.2 and 1.2a.
5
Who is the author of the affected software for CVE-2007-1030?
The affected software, libevent, was developed by Niels Provos.