| ID | CVE-2009-0858 | ||||||
| Sažetak | The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in the required manner, which allows remote attackers, with control over a third-party subdomain served by tinydns and axfrdns, to trigger DNS responses containing arbitrary records via crafted zone data for this subdomain. | ||||||
| Reference |
|
||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:M/Au:N/C:N/I:P/A:P | ||||||
| Zadnje važnije ažuriranje | 10-10-2018 - 19:32 | ||||||
| Objavljeno | 09-03-2009 - 21:30 |

