yarrick/iodine
Releases14
Frequency1 year 3 months
Last Release
Stars7.92K
Official git repo for iodine dns tunnel
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| <= 0.6.0, = 0.3.1, = 0.5.2, = 0.3.2, = 0.3.0, = 0.4.1, = 0.3.3, = 0.5.0, = 0.5.1, = 0.4.0, = 0.3.4, = 0.4.2 | — | 5 MEDIUM | ||
(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering. | ||||
| = 0.3.2 | — | 7.5 HIGH | ||
Stack-based buffer overflow in the handshake function in iodine 0.3.2 allows remote attackers to execute arbitrary code via a crafted DNS response. | ||||
| = 0.3.1, = 0.3 | — | 10 HIGH | ||
Unspecified vulnerability in IP over DNS is now easy (iodine) before 0.3.2 has unknown impact and attack vectors, related to "potential security problems." | ||||