|
|
ISC BIND OPT Record Large UDP Denial of Service Vulnerability
|
Bugtraq ID:
|
6161
|
|
Class:
|
Failure to Handle Exceptional Conditions
|
|
CVE:
|
CAN-2002-1220
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Nov 12 2002 12:00AM
|
|
Updated:
|
Nov 12 2002 12:00AM
|
|
Credit:
|
Discovery of this vulnerability credited to Neel Mehta of ISS X-Force.
|
|
Vulnerable:
|
Sun Solaris 9
Sun Cobalt RaQ XTR
SCO Open Server 5.0.7
SCO Open Server 5.0.6
SCO Open Server 5.0.5
OpenBSD OpenBSD 3.2
OpenBSD OpenBSD 3.1
OpenBSD OpenBSD 3.0
ISC BIND 8.3.3
+
Apple Mac OS X 10.2.2
+
Apple Mac OS X 10.2.1
+
Apple Mac OS X 10.2
+
Apple Mac OS X 10.1.5
+
Apple Mac OS X 10.1.4
+
Apple Mac OS X 10.1.3
+
Apple Mac OS X 10.1.2
+
Apple Mac OS X 10.1.1
+
Apple Mac OS X 10.1
+
Apple Mac OS X 10.1
+
Apple Mac OS X Server 10.2.2
+
Apple Mac OS X Server 10.2.1
+
Apple Mac OS X Server 10.2
+
Apple Mac OS X Server 10.0
+
Debian Linux 3.0
+
FreeBSD FreeBSD 4.7 -RELEASE
+
FreeBSD FreeBSD 4.7
+
MandrakeSoft Linux Mandrake 7.2
+
MandrakeSoft Single Network Firewall 7.2
+
OpenPKG OpenPKG 1.1
+
OpenPKG OpenPKG Current
ISC BIND 8.3.2
+
FreeBSD FreeBSD 4.6 -RELEASE
+
FreeBSD FreeBSD 4.6
ISC BIND 8.3.1
ISC BIND 8.3 .0
HP HP-UX 11.22
HP HP-UX 11.11
HP HP-UX 11.0 4
HP HP-UX 11.0
HP HP-UX 10.24
HP HP-UX 10.20
HP HP-UX 10.10
FreeBSD FreeBSD 4.7
FreeBSD FreeBSD 4.6
FreeBSD FreeBSD 4.5
FreeBSD FreeBSD 4.4
Compaq Tru64 5.1 b PK1 (BL1)
Compaq Tru64 5.1 b
Compaq Tru64 5.1 a PK3 (BL3)
Compaq Tru64 5.1 a PK2 (BL2)
Compaq Tru64 5.1 a PK1 (BL1)
Compaq Tru64 5.1 a
Compaq Tru64 5.1 PK5 (BL19)
Compaq Tru64 5.1 PK4 (BL18)
Compaq Tru64 5.1 PK3 (BL17)
Compaq Tru64 5.1
Compaq Tru64 5.0 a PK3 (BL17)
Compaq Tru64 5.0 a
Compaq Tru64 4.0 g PK3 (BL17)
Compaq Tru64 4.0 g
Compaq Tru64 4.0 f PK7 (BL18)
Compaq Tru64 4.0 f PK6 (BL17)
Compaq Tru64 4.0 f
Astaro Security Linux 3.2 11
Astaro Security Linux 3.2 10
Astaro Security Linux 3.2 00
Astaro Security Linux 2.0 30
Astaro Security Linux 2.0 27
Astaro Security Linux 2.0 26
Astaro Security Linux 2.0 25
Astaro Security Linux 2.0 24
Astaro Security Linux 2.0 23
Astaro Security Linux 2.0 16
|
|
|
|
Not Vulnerable:
|
ISC BIND 9.2.1
+
Caldera OpenUnix 8.0
+
MandrakeSoft Linux Mandrake 7.2
+
MandrakeSoft Single Network Firewall 7.2
+
SCO Unixware 7.1.3
ISC BIND 9.2
+
Conectiva Linux 8.0
+
Conectiva Linux 8.0
+
HP HP-UX 11.11
+
HP HP-UX 11.11
+
HP HP-UX 11.0
+
HP HP-UX 11.0
+
MandrakeSoft Linux Mandrake 8.2
+
MandrakeSoft Linux Mandrake 8.2
+
MandrakeSoft Linux Mandrake 8.1 ia64
+
MandrakeSoft Linux Mandrake 8.1 ia64
+
MandrakeSoft Linux Mandrake 8.1
+
MandrakeSoft Linux Mandrake 8.1
+
RedHat Linux 7.3 i386
+
RedHat Linux 7.3
+
RedHat Linux 7.3
ISC BIND 9.1.3
+
RedHat Linux 7.2 ia64
+
RedHat Linux 7.2 i686
+
RedHat Linux 7.2 i586
+
RedHat Linux 7.2 i386
+
RedHat Linux 7.2
+
S.u.S.E. Linux 8.0 i386
+
S.u.S.E. Linux 8.0
+
S.u.S.E. Linux 7.3 sparc
+
S.u.S.E. Linux 7.3 ppc
+
S.u.S.E. Linux 7.3 i386
+
S.u.S.E. Linux 7.3
ISC BIND 9.1.2
+
Conectiva Linux 7.0
+
S.u.S.E. Linux 7.2 i386
+
S.u.S.E. Linux 7.2
ISC BIND 9.1.1
+
MandrakeSoft Linux Mandrake 8.0 ppc
+
MandrakeSoft Linux Mandrake 8.0
ISC BIND 9.1
+
Caldera OpenUnix 8.0
+
HP Secure OS software for Linux 1.0
+
RedHat Linux 7.1 ia64
+
RedHat Linux 7.1 i386
+
RedHat Linux 7.1 alpha
+
RedHat Linux 7.1
+
S.u.S.E. Linux 7.1 x86
+
S.u.S.E. Linux 7.1 sparc
+
S.u.S.E. Linux 7.1 ppc
+
S.u.S.E. Linux 7.1 alpha
+
S.u.S.E. Linux 7.1
ISC BIND 9.0
+
S.u.S.E. Linux 7.0 sparc
+
S.u.S.E. Linux 7.0 ppc
+
S.u.S.E. Linux 7.0 i386
+
S.u.S.E. Linux 7.0 alpha
+
S.u.S.E. Linux 7.0
ISC BIND 8.3.4
+
Apple Mac OS X 10.2.4
+
Apple Mac OS X 10.2.3
+
Apple Mac OS X Server 10.2.4
+
Apple Mac OS X Server 10.2.3
+
S.u.S.E. Linux Personal 8.2
ISC BIND 8.2.7
ISC BIND 4.9.11
Astaro Security Linux 3.2 12
|
|

|