{"id":"CVE-2018-1043","details":"In Moodle 3.x, the setting for blocked hosts list can be bypassed with multiple A record hostnames.","aliases":["GHSA-hpwm-84h5-vqr8"],"modified":"2026-07-08T14:59:13.789406Z","published":"2018-01-22T08:29:00.287Z","references":[{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/102769"},{"type":"ADVISORY","url":"https://moodle.org/mod/forum/discuss.php?d=364382"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/moodle/moodle","events":[{"introduced":"b182239f21c38ea57cddb41b0c03ef3eb02709f8"},{"last_affected":"665c3ac59c35b7387a4fc70b8ac6600ce9ffeb87"}],"database_specific":{"cpe":["cpe:2.3:a:moodle:moodle:3.2.0:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.1:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.2:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.3:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.4:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.5:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.2.6:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.3.0:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.3.1:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.3.2:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.3.3:*:*:*:*:*:*:*","cpe:2.3:a:moodle:moodle:3.4.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"3.2.0"},{"last_affected":"3.2.0"},{"introduced":"3.2.1"},{"last_affected":"3.2.1"},{"introduced":"3.2.2"},{"last_affected":"3.2.2"},{"introduced":"3.2.3"},{"last_affected":"3.2.3"},{"introduced":"3.2.4"},{"last_affected":"3.2.4"},{"introduced":"3.2.5"},{"last_affected":"3.2.5"},{"introduced":"3.2.6"},{"last_affected":"3.2.6"},{"introduced":"3.3.0"},{"last_affected":"3.3.0"},{"introduced":"3.3.1"},{"last_affected":"3.3.1"},{"introduced":"3.3.2"},{"last_affected":"3.3.2"},{"introduced":"3.3.3"},{"last_affected":"3.3.3"},{"introduced":"3.4.0"},{"last_affected":"3.4.0"}],"source":"CPE_STRING"}}],"versions":["3.2.0","3.2.1","3.2.2","3.2.3","3.2.4","3.2.5","3.2.6","3.3.0","3.3.1","3.3.2","3.3.3","3.4.0","v3.4.0","v3.4.0-rc2","v3.4.0-rc3","v3.4.0-rc1","v3.4.0-beta","v3.3.0","v3.3.0-rc3","v3.3.0-rc2","v3.3.0-rc1","v3.3.0-beta","v3.2.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-1043.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"}]}