Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2019-18224
idn2_to_ascii_4i in lib/lookup.c in GNU libidn2 before 2.1.1 has a heap-based buffer overflow via a long domain string.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.024
EPSS Ranking
84.1%
CVSS Severity
CVSS v3 Score
9.8
CVSS v2 Score
7.5
References
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00008.html
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00009.html
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=12420
https://github.com/libidn/libidn2/commit/e4d1558aa2c1c04a05066ee8600f37603890ba8c
https://github.com/libidn/libidn2/compare/libidn2-2.1.0...libidn2-2.1.1
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JDQVQ2XPV5BTZUFINT7AFJSKNNBVURNJ/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MINU5RKDFE6TKAFY5DRFN3WSFDS4DYVS/
https://seclists.org/bugtraq/2020/Feb/4
https://security.gentoo.org/glsa/202003-63
https://usn.ubuntu.com/4168-1/
https://www.debian.org/security/2020/dsa-4613
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00008.html
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00009.html
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=12420
https://github.com/libidn/libidn2/commit/e4d1558aa2c1c04a05066ee8600f37603890ba8c
https://github.com/libidn/libidn2/compare/libidn2-2.1.0...libidn2-2.1.1
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JDQVQ2XPV5BTZUFINT7AFJSKNNBVURNJ/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MINU5RKDFE6TKAFY5DRFN3WSFDS4DYVS/
https://seclists.org/bugtraq/2020/Feb/4
https://security.gentoo.org/glsa/202003-63
https://usn.ubuntu.com/4168-1/
https://www.debian.org/security/2020/dsa-4613
Products affected by CVE-2019-18224
Gnu
»
Libidn2
»
Version:
0.10
cpe:2.3:a:gnu:libidn2:0.10
Gnu
»
Libidn2
»
Version:
0.11
cpe:2.3:a:gnu:libidn2:0.11
Gnu
»
Libidn2
»
Version:
0.12
cpe:2.3:a:gnu:libidn2:0.12
Gnu
»
Libidn2
»
Version:
0.13
cpe:2.3:a:gnu:libidn2:0.13
Gnu
»
Libidn2
»
Version:
0.14
cpe:2.3:a:gnu:libidn2:0.14
Gnu
»
Libidn2
»
Version:
0.15
cpe:2.3:a:gnu:libidn2:0.15
Gnu
»
Libidn2
»
Version:
0.16
cpe:2.3:a:gnu:libidn2:0.16
Gnu
»
Libidn2
»
Version:
0.3
cpe:2.3:a:gnu:libidn2:0.3
Gnu
»
Libidn2
»
Version:
0.4
cpe:2.3:a:gnu:libidn2:0.4
Gnu
»
Libidn2
»
Version:
0.5
cpe:2.3:a:gnu:libidn2:0.5
Gnu
»
Libidn2
»
Version:
0.6
cpe:2.3:a:gnu:libidn2:0.6
Gnu
»
Libidn2
»
Version:
0.7
cpe:2.3:a:gnu:libidn2:0.7
Gnu
»
Libidn2
»
Version:
0.8
cpe:2.3:a:gnu:libidn2:0.8
Gnu
»
Libidn2
»
Version:
0.9
cpe:2.3:a:gnu:libidn2:0.9
Gnu
»
Libidn2
»
Version:
2.0.0
cpe:2.3:a:gnu:libidn2:2.0.0
Gnu
»
Libidn2
»
Version:
2.0.1
cpe:2.3:a:gnu:libidn2:2.0.1
Gnu
»
Libidn2
»
Version:
2.0.2
cpe:2.3:a:gnu:libidn2:2.0.2
Gnu
»
Libidn2
»
Version:
2.0.3
cpe:2.3:a:gnu:libidn2:2.0.3
Gnu
»
Libidn2
»
Version:
2.0.4
cpe:2.3:a:gnu:libidn2:2.0.4
Gnu
»
Libidn2
»
Version:
2.0.5
cpe:2.3:a:gnu:libidn2:2.0.5
Gnu
»
Libidn2
»
Version:
2.1.0
cpe:2.3:a:gnu:libidn2:2.1.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved