CVE-2002-0140

Dnrd - Denial of Service

Title source: rule
STIX 2.1

Description

Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and possibly execute arbitrary code via a long or malformed DNS reply, which is not handled properly by parse_query, get_objectname, and possibly other functions.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Andrew Griffiths · textdosunix
https://www.exploit-db.com/exploits/21236

References (3)

Core 3
Core References
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/7957.php
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/3928
Vendor Advisory mailing-list x_refsource_bugtraq
http://online.securityfocus.com/archive/1/251619

Scores

EPSS 0.0618
EPSS Percentile 90.9%

Details

Status published
Products (16)
dnrd/dnrd 1.0
dnrd/dnrd 1.1
dnrd/dnrd 1.2
dnrd/dnrd 1.3
dnrd/dnrd 1.4
dnrd/dnrd 2.0
dnrd/dnrd 2.1
dnrd/dnrd 2.2
dnrd/dnrd 2.3
dnrd/dnrd 2.4
... and 6 more
Published Mar 25, 2002
Tracked Since Feb 18, 2026