CVE Database
/

CVE-2012-1667

Back to search

CVE-2012-1667

Published: Jun 5, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

ISC BIND 9.x before 9.7.6-P1, 9.8.x before 9.8.3-P1, 9.9.x before 9.9.1-P1, and 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P1 does not properly handle resource records with a zero-length RDATA section, which allows remote DNS servers to cause a denial of service (daemon crash or data corruption) or obtain sensitive information from process memory via a crafted record.

VendorProductVersions

n/a

n/a

affected
n/a

References

MDVSA-2012:089
vendor-advisory
x_refsource_MANDRIVA
53772
vdb-entry
x_refsource_BID
SSA:2012-341-01
vendor-advisory
x_refsource_SLACKWARE
51096
third-party-advisory
x_refsource_SECUNIA
VU#381699
third-party-advisory
x_refsource_CERT-VN
SUSE-SU-2012:0741
vendor-advisory
x_refsource_SUSE
HPSBUX02795
vendor-advisory
x_refsource_HP
RHSA-2012:1110
vendor-advisory
x_refsource_REDHAT
APPLE-SA-2012-09-19-2
vendor-advisory
x_refsource_APPLE
openSUSE-SU-2012:0722
vendor-advisory
x_refsource_SUSE
RHSA-2012:0717
vendor-advisory
x_refsource_REDHAT
DSA-2486
vendor-advisory
x_refsource_DEBIAN
SSRT100878
vendor-advisory
x_refsource_HP

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now