It was discovered that c-ares incorrectly handled terminating certain queries after a maximum number of attempts. An attacker could possibly use this issue to cause c-ares to crash, resulting in a denial of service.
{
"binaries": [
{
"binary_version": "1.34.4-2.1ubuntu0.2",
"binary_name": "libc-ares-dev"
},
{
"binary_version": "1.34.4-2.1ubuntu0.2",
"binary_name": "libc-ares2"
},
{
"binary_version": "1.34.4-2.1ubuntu0.2",
"binary_name": "libcares2"
}
],
"availability": "No subscription required"
}