A vulnerability was found in libevent. The name_parse() function in libevent's DNS code is vulnerable to a buffer overread. Upstream bug: https://github.com/libevent/libevent/issues/317 Upstream patch: https://github.com/libevent/libevent/commit/96f64a022014a208105ead6c8a7066018449d86d
Created libevent tracking bugs for this issue: Affects: fedora-all [bug 1418616]
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7 Via RHSA-2017:1201 https://access.redhat.com/errata/RHSA-2017:1201