CVE-2014-2032

Deadwood before 2.3.09, 3.x before 3.2.05, and as used in MaraDNS before 1.4.14 and 2.x before 2.0.09, allow remote attackers to cause a denial of service (out-of-bounds read and crash) by leveraging permission to perform recursive queries against Deadwood, related to missing input validation.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:maradns_project:maradns:*:*:*:*:*:*:*:*
cpe:2.3:a:maradns_project:maradns:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:deadwood_project:deadwood:*:*:*:*:*:*:*:*
cpe:2.3:a:deadwood_project:deadwood:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-03-20 21:29

Updated : 2023-12-10 12:30


NVD link : CVE-2014-2032

Mitre link : CVE-2014-2032

CVE.ORG link : CVE-2014-2032


JSON object : View

Products Affected

deadwood_project

  • deadwood

maradns_project

  • maradns
CWE
CWE-125

Out-of-bounds Read

CWE-20

Improper Input Validation