CVE Vulnerabilities

CVE-2004-1006

Published: Mar 01, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary code via certain DNS messages, a different vulnerability than CVE-2002-0702.

Affected Software

Name Vendor Start Version End Version
Dhcpd Isc 2.0.pl5 2.0.pl5
Dhcpd Isc 3.0 3.0
Dhcpd Isc 3.0 3.0
Dhcpd Isc 3.0 3.0
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0.1 3.0.1
Dhcpd Isc 3.0_b2pl9 3.0_b2pl9
Dhcpd Isc 3.0_b2pl23 3.0_b2pl23
Dhcpd Isc 3.0_pl1 3.0_pl1
Dhcpd Isc 3.0_pl2 3.0_pl2
Red Hat Enterprise Linux 2.1 RedHat dhcp *
Dhcp Ubuntu dapper *
Dhcp Ubuntu devel *
Dhcp Ubuntu edgy *
Dhcp Ubuntu feisty *

References