Vulnerabilities > ISC > Bind > 4.9.6

DATE CVE VULNERABILITY TITLE RISK
2001-07-21 CVE-2001-0497 Incorrect Default Permissions vulnerability in ISC Bind
dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.
local
low complexity
isc CWE-276
7.8
2001-02-12 CVE-2001-0013 Unspecified vulnerability in ISC Bind
Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
network
low complexity
isc
critical
10.0
2001-02-12 CVE-2001-0012 Unspecified vulnerability in ISC Bind
BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.
network
low complexity
isc
5.0
2001-02-12 CVE-2001-0011 Unspecified vulnerability in ISC Bind
Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
network
low complexity
isc
critical
10.0
1999-11-10 CVE-1999-0849 Unspecified vulnerability in ISC Bind
Denial of service in BIND named via maxdname.
network
low complexity
isc
5.0
1998-04-08 CVE-1999-0009 Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
network
low complexity
data-general isc sgi bsdi caldera ibm nec netbsd redhat sco sun
critical
10.0