Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2006-2072

Multiple unspecified vulnerabilities in DeleGate 9.x before 9.0.6 and 8.x before 8.11.6 allow remote attackers to cause a denial of service via crafted DNS responses messages that cause (1) a buffer over-read or (2) infinite recursion, which can trigger a segmentation fault or invalid memory access, as demonstrated by the OUSPG PROTOS DNS test suite.

  • Published: Apr 28, 2006
  • Updated: Apr 13, 2023
  • CVE: CVE-2006-2072
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software From Fixed in
delegate / delegate 8.9.2 8.9.2.x
delegate / delegate 8.3.3 8.3.3.x
delegate / delegate 8.11.3 8.11.3.x
delegate / delegate 9.0.4 9.0.4.x
delegate / delegate 8.10.3 8.10.3.x
delegate / delegate 8.10.1 8.10.1.x
delegate / delegate 8.10 8.10.x
delegate / delegate 9.0 9.0.x
delegate / delegate 8.4.0 8.4.0.x
delegate / delegate 7.8.0 7.8.0.x
delegate / delegate 8.9.6 8.9.6.x
delegate / delegate 8.3.4 8.3.4.x
delegate / delegate 9.0.5 9.0.5.x
delegate / delegate 8.11.2 8.11.2.x
delegate / delegate 8.10.2 8.10.2.x
delegate / delegate 8.5.0 8.5.0.x
delegate / delegate 9.0.1 9.0.1.x
delegate / delegate 7.8.1 7.8.1.x
delegate / delegate 8.9.1 8.9.1.x
delegate / delegate 7.9.11 7.9.11.x
delegate / delegate 7.7.1 7.7.1.x
delegate / delegate 9.0.2 9.0.2.x
delegate / delegate 7.7.0 7.7.0.x
delegate / delegate 8.9.4 8.9.4.x
delegate / delegate 8.10.5 8.10.5.x
delegate / delegate 8.9.5 8.9.5.x
delegate / delegate 8.11 8.11.x
delegate / delegate 8.10.6 8.10.6.x
delegate / delegate 8.9 8.9.x
delegate / delegate 8.11.5 8.11.5.x
delegate / delegate 8.10.4 8.10.4.x
delegate / delegate 7.8.2 7.8.2.x
delegate / delegate 8.11.4 8.11.4.x
delegate / delegate 8.9.3 8.9.3.x
delegate / delegate 9.0.3 9.0.3.x
delegate / delegate 8.11.1 8.11.1.x