REDHAT-BUG-1418612: Low severity libevent libevent vulnerability

Published Feb 2, 2017
·
Updated

A vulnerability was found in libevent. There is an out-of-bounds read in the DNS code of Libevent.

Upstream bug:

https://github.com/libevent/libevent/issues/332

Upstream patch:

https://github.com/libevent/libevent/commit/ec65c42052d95d2c23d1d837136d1cf1d9ecef9e

Affected Software

1 affected component
libevent libevent

Event History

Feb 2, 2017
Data Sourced
via Red Hat·10:36 AM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-1418612?

The severity of REDHAT-BUG-1418612 is categorized as moderate due to the potential for an out-of-bounds read vulnerability.

2

How do I fix REDHAT-BUG-1418612?

To fix REDHAT-BUG-1418612, you should apply the latest patch provided by the upstream maintainers of Libevent.

3

Which versions of Libevent are affected by REDHAT-BUG-1418612?

All versions of Libevent that are prior to the implementation of the fix for the out-of-bounds read in the DNS code are potentially affected by REDHAT-BUG-1418612.

4

What impact does REDHAT-BUG-1418612 have on systems using Libevent?

REDHAT-BUG-1418612 can lead to potential information disclosure or application crashes due to the out-of-bounds read in the DNS handling code.

5

Is there a known exploit for REDHAT-BUG-1418612?

As of now, there are no public exploits known for REDHAT-BUG-1418612, but the vulnerability could be leveraged by attackers if not mitigated.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203