Back to search
CVE-2007-4622
Published: Nov 5, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Integer underflow in the dns_name_fromtext function in (1) libdns_nonsecure.a and (2) libdns_secure.a in IBM AIX 5.2 allows local users to gain privileges via a crafted "-y" (TSIG key) command line argument to dig.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20071030 IBM AIX dig dns_name_fromtext Integer Underflow Vulnerability
third-party-advisory
x_refsource_IDEFENSE
26262
vdb-entry
x_refsource_BID
27437
third-party-advisory
x_refsource_SECUNIA
IZ05017
vendor-advisory
x_refsource_AIXAPAR
aix-dig-dnsnamefromtext-integer-underflow(38169)
vdb-entry
x_refsource_XF
1018871
vdb-entry
x_refsource_SECTRACK
ADV-2007-3669
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now