Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.58425
Category:Debian Local Security Checks
Title:Debian Security Advisory DSA 1319-1 (maradns)
Summary:NOSUMMARY
Description:Description:
The remote host is missing an update to maradns
announced via advisory DSA 1319-1.

Several remote vulnerabilities have been discovered in MaraDNS, a simple
security-aware Domain Name Service server. The Common Vulnerabilities and
Exposures project identifies the following problems:

CVE-2007-3114

It was discovered that malformed DNS requests can trigger memory
leaks, allowing denial of service.

CVE-2007-3115

It was discovered that malformed DNS requests can trigger memory
leaks, allowing denial of service.

CVE-2007-3116

It was discovered that malformed DNS requests can trigger memory
leaks, allowing denial of service.

The oldstable distribution (sarge) is not affected by these problems.

For the stable distribution (etch) these problems have been fixed
in version 1.2.12.04-1etch1.

For the unstable distribution (sid) these problems have been fixed in
version 1.2.12.06-1.

We recommend that you upgrade your maradns packages.

Solution:
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%201319-1

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-3114
BugTraq ID: 24337
http://www.securityfocus.com/bid/24337
Debian Security Information: DSA-1319 (Google Search)
http://www.debian.org/security/2007/dsa-1319
http://osvdb.org/37018
http://secunia.com/advisories/25406
http://secunia.com/advisories/25767
Common Vulnerability Exposure (CVE) ID: CVE-2007-3115
Bugtraq: 20070619 MaraDNS denial of service vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/471725/100/0/threaded
http://osvdb.org/37017
http://www.securitytracker.com/id?1018201
http://www.vupen.com/english/advisories/2007/2263
Common Vulnerability Exposure (CVE) ID: CVE-2007-3116
http://osvdb.org/37016
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.