Secunia Logo
 
CVE Reference: CVE-2007-3409
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-3409

Description:
Net::DNS before 0.60, a Perl module, allows remote attackers to cause a denial of service (stack consumption) via a malformed compressed DNS packet with self-referencing pointers, which triggers an infinite loop.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-483-1

TRUSTIX
  http://www.trustix.org/errata/2007/0023/

SUSE
  http://www.novell.com/linux/security/advisories/2007_17_sr.html

ST
  1018376

SGI

SAID
  Secunia Advisory: SA26211
  Secunia Advisory: SA26075
  Secunia Advisory: SA26012
  Secunia Advisory: SA26055
  Secunia Advisory: SA26014
  Secunia Advisory: SA25829
  Secunia Advisory: SA26231
  Secunia Advisory: SA26417
  Secunia Advisory: SA26543
  Secunia Advisory: SA29354

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-0674.html

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:146

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200708-06.xml

DEBIAN
  http://www.debian.org/security/2008/dsa-1515

CONFIRM
  http://rt.cpan.org/Public/Bug/Display.html?id=27285
  http://www.net-dns.org/docs/Changes.html

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/473871/100/0/threaded

BID
  24669


Return to the previous page.