Isc

Bind

181 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 27.73%
  • Published 18.06.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition that is not properly handled when the rdataset parameter to the dns_message_findtype() function in mes...

  • EPSS 0.11%
  • Published 21.07.2001 04:00:00
  • Last modified 03.04.2025 01:03:51

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynam...

  • EPSS 45.43%
  • Published 12.02.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.

  • EPSS 7.07%
  • Published 12.02.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

  • EPSS 16.73%
  • Published 12.02.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.

  • EPSS 18.67%
  • Published 12.02.2001 05:00:00
  • Last modified 03.04.2025 01:03:51

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

Exploit
  • EPSS 17.3%
  • Published 19.12.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the "zxfr bug."

  • EPSS 15.77%
  • Published 19.12.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

Exploit
  • EPSS 9.29%
  • Published 11.12.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.

  • EPSS 1.13%
  • Published 03.05.2000 04:00:00
  • Last modified 03.04.2025 01:03:51

The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.