Heap-based buffer overflow in the SPF_dns_resolv_lookup function in Spf_dns_resolv.c in libspf2 before 1.2.8 allows remote attackers to execute arbitrary code via a long DNS TXT record with a modified length field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.386
EPSS Ranking 97.1%