6.4
CVSSv2

CVE-2009-1086

Published: 25/03/2009 Updated: 15/05/2009
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the ldns_rr_new_frm_str_internal function in ldns 1.4.x allows remote malicious users to cause a denial of service (memory corruption) and possibly execute arbitrary code via a DNS resource record (RR) with a long (1) class field (clas variable) and possibly (2) TTL field.

Vulnerable Product Search on Vulmon Subscribe to Product

nlnetlabs ldns 1.4.1

nlnetlabs ldns 1.4.0