4.9
CVSSv2

CVE-2013-2494

Published: 28/03/2013 Updated: 29/03/2013
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 436
Vector: AV:N/AC:H/Au:S/C:N/I:N/A:C

Vulnerability Summary

libdns in ISC DHCP 4.2.x prior to 4.2.5-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266.

Vulnerable Product Search on Vulmon Subscribe to Product

isc dhcp 4.2.2

isc dhcp 4.2.0

isc dhcp 4.2.4

isc dhcp 4.2.1

isc dhcp 4.2.3

isc dhcp 4.2.5

Vendor Advisories

Debian Bug report logs - #704426 isc-dhcp: cve-2013-2494 Package: isc-dhcp; Maintainer for isc-dhcp is Debian ISC DHCP Maintainers <isc-dhcp@packagesdebianorg>; Reported by: Michael Gilbert <mgilbert@debianorg> Date: Mon, 1 Apr 2013 00:06:01 UTC Severity: serious Tags: security, wheezy-ignore Found in version 4 ...
libdns in ISC DHCP 42x before 425-P1 allows remote name servers to cause a denial of service (memory consumption) via vectors involving a regular expression, as demonstrated by a memory-exhaustion attack against a machine running a dhcpd process, a related issue to CVE-2013-2266 ...