- EPSS 27.73%
- Published 18.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition that is not properly handled when the rdataset parameter to the dns_message_findtype() function in mes...
CVE-2001-0497
- EPSS 0.11%
- Published 21.07.2001 04:00:00
- Last modified 03.04.2025 01:03:51
dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynam...
- EPSS 45.43%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.
- EPSS 7.07%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
- EPSS 16.73%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.
- EPSS 18.67%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
- EPSS 17.3%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."
- EPSS 15.77%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."
- EPSS 9.29%
- Published 11.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.
CVE-2000-0335
- EPSS 1.13%
- Published 03.05.2000 04:00:00
- Last modified 03.04.2025 01:03:51
The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.