CVE-2008-4194
24.09.2008, 11:42
The p_exec_query function in src/dns_query.c in pdnsd before 1.2.7-par allows remote attackers to cause a denial of service (daemon crash) via a long DNS reply with many entries in the answer section, related to a "dangling pointer bug."Enginsight
Vendor | Product | Version |
---|---|---|
pdnsd | pdnsd | 𝑥 ≤ 1.2.6-par |
pdnsd | pdnsd | 1.1.7 |
pdnsd | pdnsd | 1.1.7a:a |
pdnsd | pdnsd | 1.1.8b1-par4:b1 |
pdnsd | pdnsd | 1.1.8b1-par5:b1 |
pdnsd | pdnsd | 1.1.8b1-par6:b1 |
pdnsd | pdnsd | 1.1.8b1-par7:b1 |
pdnsd | pdnsd | 1.1.8b1-par8:b1 |
pdnsd | pdnsd | 1.1.9-par |
pdnsd | pdnsd | 1.1.10-par |
pdnsd | pdnsd | 1.1.11-par |
pdnsd | pdnsd | 1.1.11a-par:a |
pdnsd | pdnsd | 1.2-par |
pdnsd | pdnsd | 1.2.1_par:_par |
pdnsd | pdnsd | 1.2.4-par |
pdnsd | pdnsd | 1.2.5-par |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References