CVE Vulnerabilities

CVE-2005-2301

Published: Jul 19, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

PowerDNS before 2.9.18, when running with an LDAP backend, does not properly escape LDAP queries, which allows remote attackers to cause a denial of service (failure to answer ldap questions) and possibly conduct an LDAP injection attack.

Affected Software

Name Vendor Start Version End Version
Powerdns Powerdns 2.9.0 (including) 2.9.0 (including)
Powerdns Powerdns 2.9.1 (including) 2.9.1 (including)
Powerdns Powerdns 2.9.2 (including) 2.9.2 (including)
Powerdns Powerdns 2.9.3a (including) 2.9.3a (including)
Powerdns Powerdns 2.9.4 (including) 2.9.4 (including)
Powerdns Powerdns 2.9.5 (including) 2.9.5 (including)
Powerdns Powerdns 2.9.6 (including) 2.9.6 (including)
Powerdns Powerdns 2.9.7 (including) 2.9.7 (including)
Powerdns Powerdns 2.9.8 (including) 2.9.8 (including)
Powerdns Powerdns 2.9.10 (including) 2.9.10 (including)
Powerdns Powerdns 2.9.11 (including) 2.9.11 (including)
Powerdns Powerdns 2.9.12 (including) 2.9.12 (including)
Powerdns Powerdns 2.9.13 (including) 2.9.13 (including)
Powerdns Powerdns 2.9.14 (including) 2.9.14 (including)
Powerdns Powerdns 2.9.15 (including) 2.9.15 (including)
Powerdns Powerdns 2.9.16 (including) 2.9.16 (including)
Powerdns Powerdns 2.9.17 (including) 2.9.17 (including)
Pdns Ubuntu dapper *
Pdns Ubuntu devel *
Pdns Ubuntu edgy *
Pdns Ubuntu feisty *

References