MaraDNS kayıtları
maradns üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %85,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-399 Resource Management Errors3
- CWE-400 Uncontrolled Resource Consumption2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-191 Integer Underflow (Wrap or Wraparound)1
- CWE-20 Improper Input Validation1
- CWE-672 Operation on a Resource after Expiration or Release1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
32İzleyin | CVE-2011-0520İstismar yok | The compress_add_dlabel_points function in dns/Compress.c in MaraDNS 1.4.03, 1.4.05, and probably other versions allows remote attackers to maradns · maradns · CWE-119 | Yüksek7,5 | — | %5,2 | 28 Oca 2011 |
32İzleyin | CVE-2012-0024İstismar yok | MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisionmaradns · maradns · CWE-400 | Yüksek7,8 | — | %2,7 | 7 Oca 2012 |
32İzleyin | CVE-2007-3115İstismar yok | Multiple memory leaks in server/MaraDNS.c in MaraDNS before 1.2.12.06, and 1.3.x before 1.3.05, allow remote attackers to cause a denial of maradns · maradns · CWE-399 | Yüksek7,8 | — | %2,4 | 7 Haz 2007 |
30İzleyin | CVE-2023-31137İstismar yok | MaraDNS Integer Underflow Vulnerability in DNS Packet Decompressionmaradns · maradns · CWE-191 | Yüksek7,5 | — | %1,1 | 9 May 2023 |
30İzleyin | CVE-2022-30256İstismar yok | An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended domain name resolution.maradns · maradns · CWE-672 | Yüksek7,5 | — | %1,0 | 18 Kas 2022 |
21İzleyin | CVE-2004-0789Kavram kanıtı | Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before posadis · posadis | Orta5,0 | — | %2,8 | 31 Ara 2004 |
21İzleyin | CVE-2008-0061İstismar yok | MaraDNS 1.0 before 1.0.41, 1.2 before 1.2.12.08, and 1.3 before 1.3.07.04 allows remote attackers to cause a denial of service via a craftedmaradns · maradns | Orta5,0 | — | %2,1 | 3 Oca 2008 |
21İzleyin | CVE-2007-3114İstismar yok | Memory leak in server/MaraDNS.c in MaraDNS before 1.2.12.05, and 1.3.x before 1.3.03, allows remote attackers to cause a denial of service (maradns · maradns · CWE-399 | Orta5,0 | — | %1,7 | 7 Haz 2007 |
20İzleyin | CVE-2002-2097İstismar yok | The compression code in MaraDNS before 0.9.01 allows remote attackers to cause a denial of service via crafted DNS packets.maradns · maradns | Orta5,0 | — | %1,6 | 31 Ara 2002 |
20İzleyin | CVE-2011-5055İstismar yok | MaraDNS 1.3.07.12 and 1.4.08 computes hash values for DNS data without properly restricting the ability to trigger hash collisions predictabmaradns · maradns · CWE-20 | Orta5,0 | — | %1,4 | 7 Oca 2012 |
20İzleyin | CVE-2007-3116İstismar yok | Memory leak in server/MaraDNS.c in MaraDNS 1.2.12.06 and 1.3.05 allows remote attackers to cause a denial of service (memory consumption) vimaradns · maradns · CWE-399 | Orta5,0 | — | %1,4 | 7 Haz 2007 |
18İzleyin | CVE-2012-1570İstismar yok | The resolver in MaraDNS before 1.3.0.7.15 and 1.4.x before 1.4.12 overwrites cached server names and TTL values in NS records during the promaradns · maradns | Orta4,3 | — | %2,5 | 28 Mar 2012 |
18İzleyin | CVE-2010-2444İstismar yok | parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) chmaradns · maradns | Orta4,3 | — | %1,9 | 25 Haz 2010 |
8İzleyin | CVE-2011-5056İstismar yok | The authoritative server in MaraDNS through 2.0.04 computes hash values for DNS data without restricting the ability to trigger hash collisimaradns · maradns · CWE-400 | Düşük2,1 | — | %0,4 | 7 Oca 2012 |
- CVE-2011-052032İzleyin
The compress_add_dlabel_points function in dns/Compress.c in MaraDNS 1.4.03, 1.4.05, and probably other versions allows remote attackers to
YüksekCVSS 7,5İstismar yokEPSS %5maradns · maradns28 Oca 2011
- CVE-2012-002432İzleyin
MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collision
YüksekCVSS 7,8İstismar yokEPSS %3maradns · maradns7 Oca 2012
- CVE-2007-311532İzleyin
Multiple memory leaks in server/MaraDNS.c in MaraDNS before 1.2.12.06, and 1.3.x before 1.3.05, allow remote attackers to cause a denial of
YüksekCVSS 7,8İstismar yokEPSS %2maradns · maradns7 Haz 2007
- CVE-2023-3113730İzleyin
MaraDNS Integer Underflow Vulnerability in DNS Packet Decompression
YüksekCVSS 7,5İstismar yokEPSS %1maradns · maradns9 May 2023
- CVE-2022-3025630İzleyin
An issue was discovered in MaraDNS Deadwood through 3.5.0021 that allows variant V1 of unintended domain name resolution.
YüksekCVSS 7,5İstismar yokEPSS %1maradns · maradns18 Kas 2022
- CVE-2004-078921İzleyin
Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before
OrtaCVSS 5,0Kavram kanıtıEPSS %3posadis · posadis31 Ara 2004
- CVE-2008-006121İzleyin
MaraDNS 1.0 before 1.0.41, 1.2 before 1.2.12.08, and 1.3 before 1.3.07.04 allows remote attackers to cause a denial of service via a crafted
OrtaCVSS 5,0İstismar yokEPSS %2maradns · maradns3 Oca 2008
- CVE-2007-311421İzleyin
Memory leak in server/MaraDNS.c in MaraDNS before 1.2.12.05, and 1.3.x before 1.3.03, allows remote attackers to cause a denial of service (
OrtaCVSS 5,0İstismar yokEPSS %2maradns · maradns7 Haz 2007
- CVE-2002-209720İzleyin
The compression code in MaraDNS before 0.9.01 allows remote attackers to cause a denial of service via crafted DNS packets.
OrtaCVSS 5,0İstismar yokEPSS %2maradns · maradns31 Ara 2002
- CVE-2011-505520İzleyin
MaraDNS 1.3.07.12 and 1.4.08 computes hash values for DNS data without properly restricting the ability to trigger hash collisions predictab
OrtaCVSS 5,0İstismar yokEPSS %1maradns · maradns7 Oca 2012
- CVE-2007-311620İzleyin
Memory leak in server/MaraDNS.c in MaraDNS 1.2.12.06 and 1.3.05 allows remote attackers to cause a denial of service (memory consumption) vi
OrtaCVSS 5,0İstismar yokEPSS %1maradns · maradns7 Haz 2007
- CVE-2012-157018İzleyin
The resolver in MaraDNS before 1.3.0.7.15 and 1.4.x before 1.4.12 overwrites cached server names and TTL values in NS records during the pro
OrtaCVSS 4,3İstismar yokEPSS %2maradns · maradns28 Mar 2012
- CVE-2010-244418İzleyin
parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) ch
OrtaCVSS 4,3İstismar yokEPSS %2maradns · maradns25 Haz 2010
- CVE-2011-50568İzleyin
The authoritative server in MaraDNS through 2.0.04 computes hash values for DNS data without restricting the ability to trigger hash collisi
DüşükCVSS 2,1İstismar yokEPSS %0maradns · maradns7 Oca 2012