CVE Vulnerabilities

CVE-2002-1221

Published: Nov 29, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the internal BIND database and later cause a null dereference.

Affected Software

NameVendorStart VersionEnd Version
BindIsc8.1 (including)8.1 (including)
BindIsc8.1.1 (including)8.1.1 (including)
BindIsc8.1.2 (including)8.1.2 (including)
BindIsc8.2 (including)8.2 (including)
BindIsc8.2.1 (including)8.2.1 (including)
BindIsc8.2.2 (including)8.2.2 (including)
BindIsc8.2.3 (including)8.2.3 (including)
BindIsc8.2.4 (including)8.2.4 (including)
BindIsc8.2.5 (including)8.2.5 (including)
BindIsc8.2.6 (including)8.2.6 (including)
BindIsc8.3.0 (including)8.3.0 (including)
BindIsc8.3.1 (including)8.3.1 (including)
BindIsc8.3.2 (including)8.3.2 (including)
BindIsc8.3.3 (including)8.3.3 (including)

References