CVE-2010-2444

parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) character, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted csv2 zone file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:maradns:maradns:1.3.03:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.04:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.05:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.06:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.01:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.02:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.03:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.04:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.05:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.06:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.07:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.08:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.09:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.08:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.09:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.10:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.11:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.12:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.13:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.14:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.4.01:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.4.02:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-06-25 18:30

Updated : 2023-12-10 11:03


NVD link : CVE-2010-2444

Mitre link : CVE-2010-2444

CVE.ORG link : CVE-2010-2444


JSON object : View

Products Affected

maradns

  • maradns