Vulnerabilities > ISC > Bind > 9.4.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-01-16 | CVE-2008-0122 | Numeric Errors vulnerability in ISC Bind Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted input that triggers memory corruption. | 10.0 |
2007-07-24 | CVE-2007-2925 | Unspecified vulnerability in ISC Bind 9.4.0/9.4.1/9.5.0 The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recursion and allow-query-cache ACLs, which allows remote attackers to make recursive queries and query the cache. network isc | 5.8 |
2007-05-02 | CVE-2007-2241 | Denial Of Service vulnerability in ISC BIND Query_AddSOA Unspecified vulnerability in query.c in ISC BIND 9.4.0, and 9.5.0a1 through 9.5.0a3, when recursion is enabled, allows remote attackers to cause a denial of service (daemon exit) via a sequence of queries processed by the query_addsoa function. network isc | 7.1 |
2007-01-25 | CVE-2007-0494 | Data Processing Errors vulnerability in ISC Bind ISC BIND 9.0.x, 9.1.x, 9.2.0 up to 9.2.7, 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (exit) via a type * (ANY) DNS query response that contains multiple RRsets, which triggers an assertion error, aka the "DNSSEC Validation" vulnerability. | 4.3 |
2002-07-03 | CVE-2002-0651 | Buffer Overflow vulnerability in ISC Bind 9.4.0 Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers. | 7.5 |
1997-07-01 | CVE-1999-0184 | Unspecified vulnerability in ISC Bind 9.4.0 When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records. | 6.4 |