CVE Database
/

CVE-2011-0520

Back to search

CVE-2011-0520

Published: Jan 28, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

The compress_add_dlabel_points function in dns/Compress.c in MaraDNS 1.4.03, 1.4.05, and probably other versions allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long DNS hostname with a large number of labels, which triggers a heap-based buffer overflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2011-0699
vdb-entry
x_refsource_VUPEN
DSA-2196
vendor-advisory
x_refsource_DEBIAN
43107
third-party-advisory
x_refsource_SECUNIA
43027
third-party-advisory
x_refsource_SECUNIA
70630
vdb-entry
x_refsource_OSVDB
45966
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now