
Cloud Vulnerability DB
A community-led vulnerabilities database
Version 0.12.3 fixes a large number of panics, soundness issues, and CPU and memory exhaustion issues in all parts of the crate. The following is a summary of the issues per affected components. For details, please see the release notes.
Message::canonical_name
to 20. This also fixed an integer overflow in this method when ANCOUNT
wasu16::MAX.QuestionSection::answer to skip over all remaining questions
without parsing the QNAMEs to avoid being slowed down by malicious
names.FoundHosts::qname and
FoundHosts::canonical_name.Fixed various panics that could be triggered by malicious incoming DNS messages.
Fixed various panics and a memory exhaustion issue when updating the zone.
We would like to thank Qifan Zhang, Palo Alto Networks, Antoni (Tony) Jagodka (@DrVelvetFog), and @SebastiaanYN for reporting issues fixed in this release.
Source: NVD
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."