Description
Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress PDF Light Viewer Command Injection (1.4.11)
Dot CMS Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2017-11466)
Lighttpd Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4559)
Oracle Database Server CVE-2008-2602 Vulnerability (CVE-2008-2602)