CVE-2011-3581
04.11.2011, 21:55
Heap-based buffer overflow in the ldns_rr_new_frm_str_internal function in ldns before 1.6.11 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Resource Record (RR) with an unknown type containing input that is longer than a specified length.Enginsight
Vendor | Product | Version |
---|---|---|
nlnetlabs | ldns | 𝑥 ≤ 1.6.10 |
nlnetlabs | ldns | 0.50 |
nlnetlabs | ldns | 0.60 |
nlnetlabs | ldns | 0.65 |
nlnetlabs | ldns | 0.66 |
nlnetlabs | ldns | 0.70 |
nlnetlabs | ldns | 1.0.0 |
nlnetlabs | ldns | 1.1.0 |
nlnetlabs | ldns | 1.2.0 |
nlnetlabs | ldns | 1.2.1 |
nlnetlabs | ldns | 1.2.2 |
nlnetlabs | ldns | 1.3 |
nlnetlabs | ldns | 1.4.0 |
nlnetlabs | ldns | 1.4.1 |
nlnetlabs | ldns | 1.5.0 |
nlnetlabs | ldns | 1.5.1 |
nlnetlabs | ldns | 1.6.0 |
nlnetlabs | ldns | 1.6.1 |
nlnetlabs | ldns | 1.6.2 |
nlnetlabs | ldns | 1.6.3 |
nlnetlabs | ldns | 1.6.4 |
nlnetlabs | ldns | 1.6.5 |
nlnetlabs | ldns | 1.6.6 |
nlnetlabs | ldns | 1.6.7 |
nlnetlabs | ldns | 1.6.8 |
nlnetlabs | ldns | 1.6.9 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References