BIND Resolver Remote Buffer Overflow Vulnerability
BID:7228
Info
BIND Resolver Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 7228 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 18 1996 12:00AM |
| Updated: | Nov 18 1996 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to Network Associates. |
| Vulnerable: |
ISC BIND 4.9.4 ISC BIND 4.9.3 ISC BIND 4.9.2 ISC BIND 4.9 |
| Not Vulnerable: |
ISC BIND 4.9.5 |
Discussion
BIND Resolver Remote Buffer Overflow Vulnerability
A buffer overflow vulnerability has been discovered in BIND. The problem occurs due to insufficient bounds checking within the resolver code. This may allow a malicious DNS response, containing a modified length field, to trigger a buffer overflow condition.
It should be noted that applications implementing the BIND resolver code are also affected by this vulnerability.
A buffer overflow vulnerability has been discovered in BIND. The problem occurs due to insufficient bounds checking within the resolver code. This may allow a malicious DNS response, containing a modified length field, to trigger a buffer overflow condition.
It should be noted that applications implementing the BIND resolver code are also affected by this vulnerability.
Exploit / POC
BIND Resolver Remote Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.