CVE-2017-9430: Dnstracer Project Dnstracer
Critical severity, CVSS 9.8. EPSS: 11.3% chance of exploitation in the next 30 days.
Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.
Affected products
- Dnstracer Project Dnstracer: up to and including 1.9
Published 2017-06-05. Last modified 2026-06-17.