CVE-2020-6079
HIGHVideolabs libmicrodns 0.1.0 - DoS
Title source: llmDescription
An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service condition via resource exhaustion. An attacker can send one mDNS message repeatedly to trigger this vulnerability through decoding of the domain name performed by rr_decode.
Scores
CVSS v3
7.5
EPSS
0.0031
EPSS Percentile
53.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-401
Status
published
Affected Products (3)
videolabs/libmicrodns
debian/debian_linux
debian/debian_linux
Timeline
Published
Mar 24, 2020
Tracked Since
Feb 18, 2026