Vulnerability index

Browse CVEs

129 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Bind HIGH 7.1
CVE-2007-2241EPSS 8%

Unspecified vulnerability in query.c in ISC BIND 9.4.0, and 9.5.0a1 through 9.5.0a3, when recursion is enabled, allows remote attackers to cause a de…

Mitigation only
Fix from $1,950 2007-05-02
Bind HIGH 7.8
CVE-2007-0493EPSS 12%

Use-after-free vulnerability in ISC BIND 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) all…

Patch available
Fix from $1,950 2007-01-25
Bind MEDIUM 5.0
CVE-2006-4096EPSS 8%

BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via a flood of recursive queries, which c…

Patch available
Fix from $1,600 2006-09-06
Dhcpd MEDIUM 5.0
CVE-2006-3122

The supersede_lease function in memory.c in ISC DHCP (dhcpd) server 2.0pl5 allows remote attackers to cause a denial of service (application crash) v…

Fix: after 2.0pl5
Fix from $1,600 2006-08-09
Bind MEDIUM 5.0
CVE-2006-2073EPSS 8%

Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonst…

Patch available
Fix from $1,600 2006-04-27
Bind MEDIUM 5.0
CVE-2006-0987EPSS 57%

The default configuration of ISC BIND before 9.4.1-P1, when configured as a caching name server, allows recursive queries and provides additional del…

Patch available
Fix from $1,600 2006-03-03
Bind HIGH 7.5
CVE-2006-0527EPSS 8%

BIND 4 (BIND4) and BIND 8 (BIND8), if used as a target forwarder, allows remote attackers to gain privileged access via a "Kashpureff-style DNS cache…

Patch available
Fix from $1,950 2006-02-02
Bind MEDIUM 5.0
CVE-2005-0033EPSS 11%

Buffer overflow in the code for recursion and glue fetching in BIND 8.4.4 and 8.4.5 allows remote attackers to cause a denial of service (crash) via …

Patch available
Fix from $1,600 2005-05-02
Dhcpd HIGH 10.0
CVE-2004-1006EPSS 8%

Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary code via certain DNS messages, …

Patch available
Fix from $1,950 2005-03-01
Inn HIGH 7.5
CVE-2004-0045EPSS 9%

Buffer overflow in the ARTpost function in art.c in the control message handling code for INN 2.4.0 may allow remote attackers to execute arbitrary c…

Patch available
Fix from $1,950 2004-02-03
Dhcpd MEDIUM 5.0
CVE-2003-0039EPSS 8%

ISC dhcrelay (dhcp-relay) 3.0rc9 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (packet storm) via a …

Patch available
Fix from $1,600 2003-02-07
Dhcpd HIGH 7.5
CVE-2003-0026EPSS 19%

Multiple stack-based buffer overflows in the error handling routines of the minires library, as used in the NSUPDATE capability for ISC DHCPD 3.0 thr…

Patch available
Fix from $1,950 2003-01-17
Bind MEDIUM 5.0
CVE-2002-2211EPSS 8%

BIND 4 and BIND 8, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cache poisoning via a birthday at…

Patch available
Fix from $1,600 2002-12-31
Bind MEDIUM 5.0
CVE-2002-2212

The DNS resolver in unspecified versions of Fujitsu UXP/V, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to condu…

Patch available
Fix from $1,600 2002-12-31
Bind HIGH 7.5
CVE-2002-0029EPSS 10%

Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other derived libraries such as BSD libc and GNU glibc, allow…

Patch available
Fix from $1,950 2002-11-29
Inn HIGH 10.0
CVE-2002-0525

Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privile…

Patch available
Fix from $1,950 2002-08-12
Dhcpd HIGH 10.0
CVE-2002-0702EPSS 31%

Format string vulnerabilities in the logging routines for dynamic DNS code (print.c) of ISC DHCP daemon (DHCPD) 3 to 3.0.1rc8, with the NSUPDATE opti…

Patch available
Fix from $1,950 2002-07-26
Bind HIGH 7.5
CVE-2002-0651EPSS 13%

Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a d…

Patch available
Fix from $1,950 2002-07-03
Bind MEDIUM 5.0
CVE-2002-0400EPSS 14%

ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition t…

Patch available
Fix from $1,600 2002-06-18
Bind HIGH 7.8
CVE-2001-0497

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used…

Fix: after 9.1.2
Fix from $1,950 2001-07-21
Bind HIGH 10.0
CVE-2001-0010EPSS 32%

Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.

Patch available
Fix from $1,950 2001-02-12
Bind HIGH 10.0
CVE-2001-0011EPSS 8%

Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

Patch available
Fix from $1,950 2001-02-12
Bind HIGH 10.0
CVE-2001-0013EPSS 11%

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

Patch available
Fix from $1,950 2001-02-12
Bind MEDIUM 5.0
CVE-2001-0012

BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.

Patch available
Fix from $1,600 2001-02-12
Bind MEDIUM 5.0
CVE-2000-0887EPSS 23%

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and perfo…

Patch available
Fix from $1,600 2000-12-19
Bind HIGH 10.0
CVE-2000-1029EPSS 14%

Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.

Patch available
Fix from $1,950 2000-12-11
Inn MEDIUM 5.0
CVE-2000-0360

Buffer overflow in INN 2.2.1 and earlier allows remote attackers to cause a denial of service via a maliciously formatted article.

Patch available
Fix from $1,600 2000-10-20
Dhcp Client HIGH 10.0
CVE-2000-0585EPSS 7%

ISC DHCP client program dhclient allows remote attackers to execute arbitrary commands via shell metacharacters.

Patch available
Fix from $1,950 2000-06-24
Dhcp Client HIGH 7.5
CVE-1999-0808

Multiple buffer overflows in ISC DHCP Distribution server (dhcpd) 1.0 and 2.0 allow a remote attacker to cause a denial of service (crash) and possib…

Patch available
Fix from $1,950 1999-12-31
Bind HIGH 10.0
CVE-1999-0837

Denial of service in BIND by improperly closing TCP sessions via so_linger.

Mitigation only
Fix from $1,950 1999-11-10