pkg:Debian/c-ares

24 total CVEsCRITICAL3HIGH6MEDIUM12LOW2

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2016-5180c-ares - security update
    from 0, < 1.9.1-3+deb7u1
  • CRITICAL9.8CVE-2016-5180c-ares - security update
    from 0, < 1.12.0-1
  • CRITICAL9.8CVE-2016-5180c-ares - security update
    from 0, < 1.10.0-2+deb8u1
  • HIGH8.6CVE-2022-4904c-ares - security update
    from 0, < 1.14.0-1+deb10u2
  • HIGH8.6CVE-2022-4904c-ares - security update
    from 0, < 1.17.1-1+deb11u2
  • HIGH7.5CVE-2023-32067c-ares is an asynchronous resolver library.
    from 0, < 1.17.1-1+deb11u3
  • HIGH7.5CVE-2020-8277A Node.js application that allows an attacker to trigger a DNS request for a host of their choice could trigger a Denial of Service in vers…
    from 0, < 1.17.1-1
  • HIGH7.5CVE-2017-1000381c-ares - security update
    from 0, < 1.12.0-4
  • HIGH7.5CVE-2017-1000381c-ares - security update
    from 0, < 1.9.1-3+deb7u2
  • MEDIUM6.5CVE-2023-31147c-ares is an asynchronous resolver library.
    from 0
  • MEDIUM6.4CVE-2023-31130c-ares - security update
    from 0, < 1.17.1-1+deb11u3
  • MEDIUM6.4CVE-2023-31130c-ares - security update
    from 0, < 1.17.1-1+deb11u3
  • MEDIUM6.4CVE-2023-31130c-ares - security update
    from 0, < 1.14.0-1+deb10u3
  • MEDIUM5.9CVE-2025-62408c-ares - security update
    from 0, < 1.34.5-1+deb13u1
  • MEDIUM5.9CVE-2025-62408c-ares - security update
    from 0, < 1.34.5-1+deb13u1
  • MEDIUM5.9CVE-2020-22217c-ares - security update
    from 0, < 1.17.1-1
  • MEDIUM5.9CVE-2020-22217c-ares - security update
    from 0, < 1.14.0-1+deb10u4
  • MEDIUM5.6CVE-2021-3672c-ares - security update
    from 0, < 1.14.0-1+deb10u1
  • MEDIUM5.6CVE-2021-3672c-ares - security update
    from 0, < 1.12.0-1+deb9u2
  • MEDIUM5.6CVE-2021-3672c-ares - security update
    from 0, < 1.17.1-1+deb11u1
  • MEDIUM5.5CVE-2024-25629c-ares is a C library for asynchronous DNS requests.
    from 0
  • LOW3.7CVE-2023-31124c-ares is an asynchronous resolver library.
    from 0
  • LOW3.3CVE-2020-14354A possible use-after-free and double-free in c-ares lib version 1.16.0 if ares_destroy() is called prior to ares_getaddrinfo() completing.
    from 0, < 1.16.1-1
  • CVE-2025-31498c-ares is an asynchronous resolver library.
    from 0, < 1.34.5-1