SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

Search Results

IDDate
Public
Name
VU#72518807/28/2009ISC BIND 9 vulnerable to denial of service via dynamic update request
VU#80011307/08/2008Multiple DNS implementations vulnerable to cache poisoning
VU#25273507/24/2007ISC BIND generates cryptographically weak DNS query IDs
VU#18729707/24/2007ISC BIND does not correctly set default access controls
VU#20361112/10/2007inet_network() off-by-one buffer overflow
VU#92790508/27/2007BIND version 8 generates cryptographically weak DNS query identifiers
VU#71846005/01/2007ISC BIND denial of service vulnerability
VU#69716409/05/2006BIND vulnerable to an INSIST failure via sending of multiple recursive queries
VU#91540409/05/2006BIND vulnerable to an assertion failure when querying for SIG records
VU#28485701/15/2003ISC DHCPD minires library contains multiple buffer overflows
VU#32763301/25/2005BIND 8.4.4 and 8.4.5 vulnerable to buffer overflow in q_usedns
VU#93861701/25/2005BIND 9.3.0 vulnerable to denial of service in validator code
VU#69704904/23/2003Cisco Secure ACS for Windows CSAdmin vulnerable to buffer overflow via login requests
VU#86891601/29/2001ISC BIND 4 contains input validation error in nslookupComplain()
VU#94875008/10/2004Microsoft Outlook Web Access contains vulnerability in HTML redirection query
VU#85228311/11/2002Cached malformed SIG record buffer overflow
VU#71597311/07/2000ISC BIND 8.2.2-P6 vulnerable to DoS via compressed zone transfer, aka the "zxfr bug"
VU#1314511/10/1999BIND memcpy not bounded in case T_SIG of rrextract()
VU#32543101/29/2001Queries to ISC BIND servers may disclose environment variables
VU#58168211/12/2002ISC BIND 8 fails to properly dereference cache SIG RR elements with invalid expiry times from the internal database
VU#46782805/27/2003Mac OS X LDAP plugins transmit user credentials in clear text
VU#54297106/26/2002Multiple vendors' Domain Name System (DNS) stub resolvers vulnerable to buffer overflow via network name and address lookups
VU#73833110/01/2002Domain Name System (DNS) resolver libraries vulnerable to read buffer overflow
VU#57218301/29/2001ISC BIND 4 contains buffer overflow in nslookupComplain()
VU#19835511/07/2000ISC BIND 8.2.2-P6 vulnerable to DoS when processing SRV records, aka the "srv bug"
VU#26787304/07/2003Samba contains multiple buffer overflows
VU#19694501/29/2001ISC BIND 8 contains buffer overflow in transaction signature (TSIG) handling code
VU#45787511/19/2002Various DNS service implementations generate multiple simultaneous queries for the same resource record
VU#1653211/10/1999BIND T_NXT record processing may cause buffer overflow
VU#80353906/26/2002Multiple vendors' Domain Name System (DNS) stub resolvers vulnerable to buffer overflows
VU#22959511/12/2002Overly large OPT record assertion
VU#84436011/12/2002Domain Name System (DNS) stub resolver libraries vulnerable to buffer overflows via network name or address lookups
VU#48349209/10/2003Microsoft Windows RPCSS Service contains heap overflow in DCOM activation routines
VU#73912305/04/2001ISC BIND 9 fails to process additional data chains in responses correctly thereby causing the server to fail an internal consistency check
VU#73464411/26/2003ISC BIND 8 vulnerable to cache poisoning via negative responses

If this page is empty, your search did not match any documents.

Produced 2009 by US-CERT, a government organization
Disclaimers and copyright information