CVE Vulnerabilities

CVE-2004-0461

Published: Aug 06, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, which can lead to buffer overflow vulnerabilities that enable a denial of service (server crash) and possibly execute arbitrary code.

Affected Software

Name Vendor Start Version End Version
Dns_one_appliance Infoblox 2.3.1_r5 (including) 2.3.1_r5 (including)
Dns_one_appliance Infoblox 2.4.0.8 (including) 2.4.0.8 (including)
Dns_one_appliance Infoblox 2.4.0.8a (including) 2.4.0.8a (including)

References