10

CVE-2008-0122

Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted input that triggers memory corruption.

Data is provided by the National Vulnerability Database (NVD)
IscBind Version <= 9.4.2
   FreebsdFreebsd Version6.2 Update-
   FreebsdFreebsd Version6.2 Updatep1
   FreebsdFreebsd Version6.2 Updatep10
   FreebsdFreebsd Version6.2 Updatep11
   FreebsdFreebsd Version6.2 Updatep12
   FreebsdFreebsd Version6.2 Updatep4
   FreebsdFreebsd Version6.2 Updatep5
   FreebsdFreebsd Version6.2 Updatep6
   FreebsdFreebsd Version6.2 Updatep7
   FreebsdFreebsd Version6.2 Updatep8
   FreebsdFreebsd Version6.2 Updatep9
   FreebsdFreebsd Version6.2 Updaterc1
   FreebsdFreebsd Version6.2 Updaterc2
   FreebsdFreebsd Version6.3 Update-
   FreebsdFreebsd Version6.3 Updatep1
   FreebsdFreebsd Version6.3 Updatep10
   FreebsdFreebsd Version6.3 Updatep11
   FreebsdFreebsd Version6.3 Updatep12
   FreebsdFreebsd Version6.3 Updatep13
   FreebsdFreebsd Version6.3 Updatep14
   FreebsdFreebsd Version6.3 Updatep15
   FreebsdFreebsd Version6.3 Updatep2
   FreebsdFreebsd Version6.3 Updatep3
   FreebsdFreebsd Version6.3 Updatep4
   FreebsdFreebsd Version6.3 Updatep5
   FreebsdFreebsd Version6.3 Updatep6
   FreebsdFreebsd Version6.3 Updatep7
   FreebsdFreebsd Version6.3 Updatep8
   FreebsdFreebsd Version6.3 Updatep9
   FreebsdFreebsd Version6.3 Updaterc2
   FreebsdFreebsd Version6.4 Update-
   FreebsdFreebsd Version6.4 Updatep1
   FreebsdFreebsd Version6.4 Updatep10
   FreebsdFreebsd Version6.4 Updatep11
   FreebsdFreebsd Version6.4 Updatep2
   FreebsdFreebsd Version6.4 Updatep3
   FreebsdFreebsd Version6.4 Updatep4
   FreebsdFreebsd Version6.4 Updatep5
   FreebsdFreebsd Version6.4 Updatep6
   FreebsdFreebsd Version6.4 Updatep7
   FreebsdFreebsd Version6.4 Updatep8
   FreebsdFreebsd Version6.4 Updatep9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.62% 0.812
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
http://www.kb.cert.org/vuls/id/203611
Third Party Advisory
US Government Resource
http://www.securityfocus.com/bid/27283
Patch
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id?1019189
Third Party Advisory
VDB Entry
https://bugzilla.redhat.com/show_bug.cgi?id=429149
Third Party Advisory
Issue Tracking