Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability

BID:13729

Info

Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability

Bugtraq ID: 13729
Class: Design Error
CVE: CVE-2005-4794
CVE-2005-0036
CVE-2005-0037
CVE-2005-0038
Remote: Yes
Local: No
Published: May 24 2005 12:00AM
Updated: Jul 06 2016 02:40PM
Credit: Discovered by Dr. Steve Beaty from the Department of Mathematical and Computer Sciences at the Metropolitan State College of Denver.
Vulnerable: PowerDNS PowerDNS 2.9.16
PowerDNS PowerDNS 2.9.15
+ Gentoo Linux
PowerDNS PowerDNS 2.8
PowerDNS PowerDNS 2.0 RC1
dnrd dnrd 2.10
- Debian Linux 2.2 r3
+ SmoothWall SmoothWall 0.9.9 SE
+ SmoothWall SmoothWall 0.9.9
- Sun Solaris 8_sparc
- Sun Solaris 7.0
- Sun Solaris 2.6
dnrd dnrd 2.9
dnrd dnrd 2.8
- Sun Solaris 8_sparc
- Sun Solaris 7.0
- Sun Solaris 2.6
dnrd dnrd 2.7
dnrd dnrd 2.6
dnrd dnrd 2.5
dnrd dnrd 2.4
dnrd dnrd 2.3
dnrd dnrd 2.2
dnrd dnrd 2.1
dnrd dnrd 2.0
dnrd dnrd 1.4
dnrd dnrd 1.3
dnrd dnrd 1.2
dnrd dnrd 1.1
dnrd dnrd 1.0
DeleGate DeleGate 8.10.2
DeleGate DeleGate 8.10.1
DeleGate DeleGate 8.10
DeleGate DeleGate 8.9.6
DeleGate DeleGate 8.9.5
DeleGate DeleGate 8.9.4
DeleGate DeleGate 8.9.3
DeleGate DeleGate 8.9.2
DeleGate DeleGate 8.9.1
DeleGate DeleGate 8.9
DeleGate DeleGate 8.5 .0
DeleGate DeleGate 8.4 .0
DeleGate DeleGate 8.3.4
DeleGate DeleGate 8.3.3
DeleGate DeleGate 7.9.11
DeleGate DeleGate 7.8.2
DeleGate DeleGate 7.8.1
DeleGate DeleGate 7.8 .0
- FreeBSD FreeBSD 5.0
- HP HP-UX 11.20
- IBM AIX 4.3.3
- Microsoft Windows 2000 Professional SP3
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows 95
- Microsoft Windows 98
- Microsoft Windows 98SE
- Microsoft Windows ME
- Microsoft Windows NT 4.0 SP6a
- Microsoft Windows NT 4.0 SP5
- Microsoft Windows NT 4.0 SP4
- Microsoft Windows NT 4.0 SP3
- Microsoft Windows NT 4.0 SP2
- Microsoft Windows NT 4.0 SP1
- Microsoft Windows NT 4.0
- OpenBSD OpenBSD 2.9
- OpenBSD OpenBSD 3.0
- Sun Solaris 8_sparc
- Sun Solaris 7.0
- Sun Solaris 2.6
DeleGate DeleGate 7.7.1
- FreeBSD FreeBSD 5.0
- HP HP-UX 11.20
- IBM AIX 4.3.3
- Microsoft Windows 2000 Professional SP3
- Microsoft Windows 2000 Professional SP2
- Microsoft Windows 2000 Professional SP1
- Microsoft Windows 2000 Professional
- Microsoft Windows 95
- Microsoft Windows 98
- Microsoft Windows 98SE
- Microsoft Windows ME
- Microsoft Windows NT 4.0 SP6a
- Microsoft Windows NT 4.0 SP5
- Microsoft Windows NT 4.0 SP4
- Microsoft Windows NT 4.0 SP3
- Microsoft Windows NT 4.0 SP2
- Microsoft Windows NT 4.0 SP1
- Microsoft Windows NT 4.0
- OpenBSD OpenBSD 2.9
- OpenBSD OpenBSD 3.0
- Sun Solaris 8_sparc
- Sun Solaris 7.0
- Sun Solaris 2.6
DeleGate DeleGate 7.7 .0
Cisco Unity Express
Cisco Subscriber Edge Services Manager (SESM) 3.3(1)
Cisco Subscriber Edge Services Manager (SESM) 3.2(2)
Cisco Subscriber Edge Services Manager (SESM) 3.2(1)
Cisco IP Phone 7912 0
Cisco IP Phone 7905
Cisco IP Phone 7902
Cisco Content Router 4450
Cisco Content Router 4430 4.1
Cisco Content Router 4430 4.0
Cisco Content Router 4430
Cisco Content Engine Module for Cisco Router 3800 Series
Cisco Content Engine Module for Cisco Router 3700 Series
Cisco Content Engine Module for Cisco Router 3600 Series
Cisco Content Engine Module for Cisco Router 2800 Series
Cisco Content Engine Module for Cisco Router 2600 Series
Cisco Content Engine 7325
Cisco Content Engine 7320 4.1
Cisco Content Engine 7320 4.0
Cisco Content Engine 7320 3.1
Cisco Content Engine 7320 2.2 .0
Cisco Content Engine 7320
Cisco Content Engine 590 4.1
Cisco Content Engine 590 4.0
Cisco Content Engine 590 3.1
Cisco Content Engine 590 2.2 .0
Cisco Content Engine 590
Cisco Content Engine 565
Cisco Content Engine 560 4.1
Cisco Content Engine 560 4.0
Cisco Content Engine 560 3.1
Cisco Content Engine 560 2.2 .0
Cisco Content Engine 560
Cisco Content Engine 510
Cisco Content Engine 507 4.1
Cisco Content Engine 507 4.0
Cisco Content Engine 507 3.1
Cisco Content Engine 507 2.2 .0
Cisco Content Engine 507
Cisco Content Distribution Manager 4670
Cisco Content Distribution Manager 4650 4.1
Cisco Content Distribution Manager 4650 4.0
Cisco Content Distribution Manager 4650
Cisco Content Distribution Manager 4630 4.1
Cisco Content Distribution Manager 4630 4.0
Cisco Content Distribution Manager 4630
Cisco ATA-188
Cisco ATA-186
Cisco Application & Content Networking Software (ACNS)
Cisco Application & Content Networking Software 5.2.3 .9
Cisco Application & Content Networking Software 5.2.1 .7
Cisco Application & Content Networking Software 5.2
Cisco Application & Content Networking Software 5.1.13 .7
Cisco Application & Content Networking Software 5.1.11 .6
Cisco Application & Content Networking Software 5.1
Cisco Application & Content Networking Software 5.0.17 .6
Cisco Application & Content Networking Software 5.0.5
Cisco Application & Content Networking Software 5.0.3
Cisco Application & Content Networking Software 5.0.1
Cisco Application & Content Networking Software 5.0
Cisco Application & Content Networking Software 4.2.11
Cisco Application & Content Networking Software 4.2.9
Cisco Application & Content Networking Software 4.2.7
Cisco Application & Content Networking Software 4.2
Cisco Application & Content Networking Software 4.1.3
Cisco Application & Content Networking Software 4.1.1
Cisco Application & Content Networking Software 4.0.3
Cisco Application & Content Networking Software
Not Vulnerable: PowerDNS PowerDNS 2.9.17
+ Gentoo Linux
dnrd dnrd 2.18
DeleGate DeleGate 8.11.1
DeleGate DeleGate 8.11
DeleGate DeleGate 8.10.6
DeleGate DeleGate 8.10.5
DeleGate DeleGate 8.10.4
DeleGate DeleGate 8.10.3
Cisco Subscriber Edge Services Manager (SESM) 3.3(2)
Cisco Application & Content Networking Software 5.3.3
Cisco Application & Content Networking Software 5.2.7
Cisco Application & Content Networking Software 5.1.15

Discussion

Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability

Multiple DNS vendors are susceptible to a remote denial-of-service vulnerability. This issue affects both DNS servers and clients.

This issue arises when an affected application handles a specially crafted DNS message.

A successful attack would crash the affected client or server.

Exploit / POC

Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability


Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]

Solution / Fix

Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability

Solution:

The following versions are not affected by this issue; users are advised to upgrade:

- DeleGate 8.10.3 and subsequent versions.
- dnrd 2.18 and subsequent versions.
- PowerDNS 2.9.17.

Cisco has released advisory cisco-sn-20050524-dns to address this issue. Please see the referenced advisory for further information on obtaining fixes.

References

Multiple Vendor DNS Message Decompression Remote Denial of Service Vulnerability

References:

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report