← Back to CVE List
Vulnerability Intelligence Report

CVE-2019-25039

disputed

Unbound before 1.9.5 allows an integer overflow in a size calculation in respip/respip.c. NOTE: The vendor disputes that this is a vulnerability. Although the code may be vulnerable, a running Unbound installation cannot be remotely or locally exploited

No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:2.04%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
nlnetlabs unbound all
debian debian_linux 9.0

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.037%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2021-04-27T00:00:00
Published2021-04-27T05:16:54
Last Updated2024-08-05T03:00:18

LINK COPIED TO CLIPBOARD