10
CVE-2004-0460
- EPSS 63.05%
- Veröffentlicht 06.08.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multiple hostname options in (1) DISCOVER, (2) OFFER, (3) REQUEST, (4) ACK, or (5) NAK messages, which can generate a long string when writing to a log file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Infoblox ≫ Dns One Appliance Version2.3.1_r5
Infoblox ≫ Dns One Appliance Version2.4.0.8
Infoblox ≫ Dns One Appliance Version2.4.0.8a
Suse ≫ Suse Email Server Versioniii
Mandrakesoft ≫ Mandrake Linux Version9.0
Mandrakesoft ≫ Mandrake Linux Version9.1
Mandrakesoft ≫ Mandrake Linux Version9.1 Editionppc
Mandrakesoft ≫ Mandrake Linux Version9.2
Mandrakesoft ≫ Mandrake Linux Version9.2 Editionamd64
Mandrakesoft ≫ Mandrake Linux Version10.0
Mandrakesoft ≫ Mandrake Linux Version10.0 Editionamd64
Redhat ≫ Fedora Core Versioncore_2.0
Suse ≫ Suse Linux Version7 Editionenterprise_server
Suse ≫ Suse Linux Version8 Editionenterprise_server
Suse ≫ Suse Linux Version8.0
Suse ≫ Suse Linux Version8.0 Editioni386
Suse ≫ Suse Linux Version8.1
Suse ≫ Suse Linux Version8.2
Suse ≫ Suse Linux Version9.0
Suse ≫ Suse Linux Version9.0 Editionx86_64
Suse ≫ Suse Linux Version9.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 63.05% | 0.982 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|