Critical severity9.8NVD Advisory· Published Feb 20, 2020· Updated Jun 17, 2026
CVE-2014-3484
CVE-2014-3484
Description
Multiple stack-based buffer overflows in the __dn_expand function in network/dn_expand.c in musl libc 1.1x before 1.1.2 and 0.9.13 through 1.0.3 allow remote attackers to (1) have unspecified impact via an invalid name length in a DNS response or (2) cause a denial of service (crash) via an invalid name length in a DNS response, related to an infinite loop with no output.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- git.musl-libc.org/cgit/musl/commit/nvdPatch
- seclists.org/oss-sec/2014/q2/495nvdMailing ListPatchThird Party Advisory
News mentions
0No linked articles in our index yet.