CVE-2010-2444
N/A
N/A
Summary
parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) character, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted csv2 zone file.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.openwall.com/lists/oss-security/2010/06/24/5
- http://www.openwall.com/lists/oss-security/2010/06/09/4
- http://maradns.org/download/maradns-1.4.02-parse_segfault.patch
References
- http://www.openwall.com/lists/oss-security/2010/06/24/5
- http://www.openwall.com/lists/oss-security/2010/06/09/4
- http://maradns.org/download/maradns-1.4.02-parse_segfault.patch
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.