← back
CVE-2022-2881mediumCWE-125

Buffer overread in statistics channel code

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.5epss 1.4%
exploitation probability
1.4%top 29% of all CVEs
observed exploitation
nono source reports it
The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:H
Affected products
ISC · BIND9