Back to search
CVE-2008-0122
Published: Jan 16, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted input that triggers memory corruption.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
28579
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=429149
x_refsource_CONFIRM
RHSA-2008:0300
vendor-advisory
x_refsource_REDHAT
27283
vdb-entry
x_refsource_BID
30538
third-party-advisory
x_refsource_SECUNIA
20080124 rPSA-2008-0029-1 bind bind-utils
mailing-list
x_refsource_BUGTRAQ
VU#203611
third-party-advisory
x_refsource_CERT-VN
FreeBSD-SA-08:02
vendor-advisory
x_refsource_FREEBSD
ADV-2008-0703
vdb-entry
x_refsource_VUPEN
http://support.avaya.com/elmodocs2/security/ASA-2008-244.htm
x_refsource_CONFIRM
ADV-2008-1743
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:10190
vdb-entry
signature
x_refsource_OVAL
FEDORA-2008-0904
vendor-advisory
x_refsource_FEDORA
28429
third-party-advisory
x_refsource_SECUNIA
https://issues.rpath.com/browse/RPL-2169
x_refsource_CONFIRM
1019189
vdb-entry
x_refsource_SECTRACK
SUSE-SR:2008:006
vendor-advisory
x_refsource_SUSE
28487
third-party-advisory
x_refsource_SECUNIA
http://www.isc.org/index.pl?/sw/bind/bind-security.php
x_refsource_CONFIRM
freebsd-inetnetwork-bo(39670)
vdb-entry
x_refsource_XF
30313
third-party-advisory
x_refsource_SECUNIA
30718
third-party-advisory
x_refsource_SECUNIA
29323
third-party-advisory
x_refsource_SECUNIA
238493
vendor-advisory
x_refsource_SUNALERT
29161
third-party-advisory
x_refsource_SECUNIA
ADV-2008-0193
vdb-entry
x_refsource_VUPEN
28367
third-party-advisory
x_refsource_SECUNIA
FEDORA-2008-0903
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now