Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2002-0029
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2002-0029

Description:
Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other derived libraries such as BSD libc and GNU glibc, allow remote attackers to execute arbitrary code via DNS server responses that trigger the overflow in the (1) getnetbyname, or (2) getnetbyaddr functions, aka "LIBRESOLV: buffer overrun" and a different vulnerability than CVE-2002-0684.

CVE Status:
Candidate

References:

XF
  http://www.iss.net/security_center/static/10624.php

SGI

NETBSD

CONFIRM
  http://www.isc.org/products/BIND/bind-security.html

CERT-VN
  844360

CERT
  http://www.cert.org/advisories/CA-2002-31.html

BID
  6186

APPLE
  http://lists.apple.com/archives/Security-announce/2002/Nov/msg00000.html


Return to the previous page.