Where
-Infinity
0

Vendor Risk Score

See how c-ares compares to other vendors in security performance

View Risk Score →

unknown/c-aresc-ares has a Use After Free vulnerability when connection is cleaned up after error

Risk 35
Severity
5.9
First published (updated )

c-ares c-aresUse After Free

Risk 19
Severity
4
First published (updated )

debian/c-aresc-ares has a use-after-free in read_answers()

Risk 45
Severity
8.3
EPSS
0.14%
First published (updated )

CVE-2025-31498: c-as use-after-fe

First published (updated )

c-ares CVE-2024-25629

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ubuntu/c-aresc-ares out of bounds read in ares__read_line()

Risk 25
Severity
5.5
EPSS
0.04%
First published (updated )

c-ares c-aresBuffer Overflow

Risk 90
Severity
9.8
First published (updated )

c-ares c-aresCVE-2023-32067. 0-byte UDP payload causes Denial of Service (https://github.com/c-ares/c-ares/secur…

Risk 33
Severity
7
First published (updated )

Fedoraproject FedoraInsufficient randomness in generation of DNS query IDs in c-ares

Risk 40
Severity
6.5
First published (updated )

c-ares c-aresDescription of issue(s): When /dev/urandom or RtlGenRandom() are unavailable, c-ares uses rand() to …

Risk 19
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ubuntu/c-aresBuffer Underwrite in ares_inet_net_pton()

Risk 61
Severity
6.4
First published (updated )

c-ares c-aresares_inet_net_pton() is vulnerable to a buffer underflow for certain ipv6 addresses, in particular "…

Risk 19
Severity
4
First published (updated )

Fedoraproject FedoraAutoTools does not set CARES_RANDOM_FILE during cross compilation

Risk 40
Severity
6.5
First published (updated )

c-ares c-aresWhen cross-compiling c-ares and using the autotools build system, CARES_RANDOM_FILE will not be set,…

Risk 5
Severity
1
First published (updated )

redhat/c-aresUse After Free, Double Free

Risk 18
Severity
3.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Nodejs Node.jsInfoleak

Risk 43
Severity
7.5
First published (updated )

c-ares c-aresBuffer Overflow

Risk 88
Severity
9.8
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203