Lucene search

K
cve[email protected]CVE-2002-0684
HistoryAug 12, 2002 - 4:00 a.m.

CVE-2002-0684

2002-08-1204:00:00
web.nvd.nist.gov
24
buffer overflow
dns resolver
network names
bind
glibc
cve-2002-0684
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

9.7 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

83.9%

Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as used in BIND 4.9.8 and ported to glibc 2.2.5 and earlier, allows remote malicious DNS servers to execute arbitrary code through a subroutine used by functions such as getnetbyname and getnetbyaddr.

Affected configurations

NVD
Node
gnuglibcRange2.2.5
OR
iscbindMatch4.9.8

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

9.7 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

83.9%