ISC / Bind
182 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2007-0493 | bind use-after-free | HIGH | 7.8 | Jan 25, 2007 |
| CVE-2006-4096 | INSIST failure in ISC BIND recursive query | MEDIUM | 5.0 | Sep 6, 2006 |
| CVE-2006-4095 | BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an assertion f… | HIGH | 7.5 | Sep 6, 2006 |
| CVE-2002-2213 | The DNS resolver in unspecified versions of Infoblox DNS One, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS… | MEDIUM | 5.0 | May 23, 2006 |
| CVE-2002-2212 | The DNS resolver in unspecified versions of Fujitsu UXP/V, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cac… | MEDIUM | 5.0 | May 23, 2006 |
| CVE-2002-2211 | BIND 4 and BIND 8, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cache poisoning via a birthday attack that… | MEDIUM | 5.0 | May 23, 2006 |
| CVE-2006-2073 | Unspecified vulnerability in ISC BIND allows remote attackers to cause a denial of service via a crafted DNS message with a "broken" TSIG, as demonstrated by t… | MEDIUM | 5.0 | Apr 27, 2006 |
| CVE-2006-0987 | bind: DDoS (traffic amplification) via DNS queries with spoofed IP addresses due to additional information delegation to arbitrary IP addresses | MEDIUM | 5.0 | Mar 3, 2006 |
| CVE-2006-0527 | BIND 4 (BIND4) and BIND 8 (BIND8), if used as a target forwarder, allows remote attackers to gain privileged access via a "Kashpureff-style DNS cache corruptio… | HIGH | 7.5 | Feb 2, 2006 |
| CVE-2005-0034 | An "incorrect assumption" in the authvalidated validator function in BIND 9.3.0, when DNSSEC is enabled, allows remote attackers to cause a denial of service (… | MEDIUM | 4.3 | Jan 29, 2005 |
| CVE-2005-0033 | Buffer overflow in the code for recursion and glue fetching in BIND 8.4.4 and 8.4.5 allows remote attackers to cause a denial of service (crash) via queries th… | MEDIUM | 5.0 | Jan 29, 2005 |
| CVE-2002-1221 | BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the i… | MEDIUM | 5.0 | Sep 1, 2004 |
| CVE-2002-1220 | BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does no… | MEDIUM | 5.0 | Sep 1, 2004 |
| CVE-2002-1219 | Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certa… | HIGH | 7.5 | Sep 1, 2004 |
| CVE-2002-0651 | security flaw | HIGH | 7.5 | Sep 1, 2004 |
| CVE-2002-0400 | security flaw | MEDIUM | 5.0 | Sep 1, 2004 |
| CVE-2003-0914 | ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses wi… | MEDIUM | 4.3 | Dec 2, 2003 |
| CVE-2002-0029 | security flaw | HIGH | 7.5 | Nov 21, 2002 |
| CVE-2002-0684 | security flaw | HIGH | 7.5 | Jul 31, 2002 |
| CVE-2001-0497 | dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS T… | HIGH | 7.8 | Mar 9, 2002 |
| CVE-2001-0013 | security flaw | HIGH | 10.0 | May 7, 2001 |
| CVE-2001-0012 | security flaw | MEDIUM | 5.0 | May 7, 2001 |
| CVE-2001-0011 | security flaw | HIGH | 10.0 | May 7, 2001 |
| CVE-2001-0010 | security flaw | HIGH | 10.0 | May 7, 2001 |
| CVE-2000-0888 | security flaw | MEDIUM | 5.0 | Jan 22, 2001 |
Showing 151 to 175 of 182 CVEs