CVE-2007-3115
Summary
| CVE | CVE-2007-3115 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-06-07 21:30:00 UTC |
| Updated | 2018-10-16 16:47:00 UTC |
| Description | Multiple memory leaks in server/MaraDNS.c in MaraDNS before 1.2.12.06, and 1.3.x before 1.3.05, allow remote attackers to cause a denial of service (memory consumption) via (1) reverse lookups or (2) requests for records in a class other than Internet (IN), a different set of affected versions than CVE-2007-3114 and CVE-2007-3116. |
Risk And Classification
Problem Types: CWE-399
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Maradns | Maradns | 1.2.12.01 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.02 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.03 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.04 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.05 | All | All | All |
| Application | Maradns | Maradns | 1.3.01 | All | All | All |
| Application | Maradns | Maradns | 1.3.02 | All | All | All |
| Application | Maradns | Maradns | 1.3.03 | All | All | All |
| Application | Maradns | Maradns | 1.3.04 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.01 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.02 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.03 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.04 | All | All | All |
| Application | Maradns | Maradns | 1.2.12.05 | All | All | All |
| Application | Maradns | Maradns | 1.3.01 | All | All | All |
| Application | Maradns | Maradns | 1.3.02 | All | All | All |
| Application | Maradns | Maradns | 1.3.03 | All | All | All |
| Application | Maradns | Maradns | 1.3.04 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Debian -- Security Information -- DSA-1319-1 maradns | DEBIAN | www.debian.org | |
| superb-west.dl.sourceforge.net/sourceforge/maradns/maradns-1.2.12.06.tar.gz | CONFIRM | superb-west.dl.sourceforge.net | |
| MaraDNS Memory Leak Lets Remote Users Deny Service - SecurityTracker | SECTRACK | www.securitytracker.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | Vendor Advisory |
| MaraDNS - a small open-source DNS server | CONFIRM | www.maradns.org | |
| Debian update for maradns - Advisories - Secunia | SECUNIA | secunia.com | Vendor Advisory |
| MaraDNS Multiple Remote Denial of Service Vulnerabilities | BID | www.securityfocus.com | Patch |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| 37017 | OSVDB | osvdb.org | |
| MaraDNS Denial of Service Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.