CVE-2002-1220

BIND <8.3.4 - DoS

Title source: llm
STIX 2.1

Description

BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does not exist, with an OPT resource record with a large UDP payload size.

Exploits (1)

exploitdb WORKING POC VERIFIED
by spybreak · cdoslinux
https://www.exploit-db.com/exploits/22011

Scores

EPSS 0.3269
EPSS Percentile 96.9%

Details

Status published
Products (11)
freebsd/freebsd 4.4
freebsd/freebsd 4.5
freebsd/freebsd 4.6
freebsd/freebsd 4.7
isc/bind 8.3.0
isc/bind 8.3.1
isc/bind 8.3.2
isc/bind 8.3.3
openbsd/openbsd 3.0
openbsd/openbsd 3.1
... and 1 more
Published Nov 29, 2002
Tracked Since Feb 18, 2026