CVE Vulnerabilities

CVE-2002-0400

Published: Jun 18, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition that is not properly handled when the rdataset parameter to the dns_message_findtype() function in message.c is not NULL, aka DoS_findtype.

Affected Software

NameVendorStart VersionEnd Version
BindIsc9.0 (including)9.0 (including)
BindIsc9.1 (including)9.1 (including)
BindIsc9.1.1 (including)9.1.1 (including)
BindIsc9.1.2 (including)9.1.2 (including)
BindIsc9.1.3 (including)9.1.3 (including)
BindIsc9.2 (including)9.2 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.1RedHat*
Red Hat Linux 7.2RedHat*
Red Hat Linux 7.3RedHat*

References