Total vulnerabilities in the database
parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) character, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted csv2 zone file.
Software | From | Fixed in |
---|---|---|
maradns / maradns | 1.3.10 | 1.3.10.x |
maradns / maradns | 1.3.07.07 | 1.3.07.07.x |
maradns / maradns | 1.4.01 | 1.4.01.x |
maradns / maradns | 1.3.03 | 1.3.03.x |
maradns / maradns | 1.3.07.04 | 1.3.07.04.x |
maradns / maradns | 1.3.07.08 | 1.3.07.08.x |
maradns / maradns | 1.3.05 | 1.3.05.x |
maradns / maradns | 1.3.13 | 1.3.13.x |
maradns / maradns | 1.3.06 | 1.3.06.x |
maradns / maradns | 1.3.08 | 1.3.08.x |
maradns / maradns | 1.3.07.03 | 1.3.07.03.x |
maradns / maradns | 1.4.02 | 1.4.02.x |
maradns / maradns | 1.3.07.01 | 1.3.07.01.x |
maradns / maradns | 1.3.12 | 1.3.12.x |
maradns / maradns | 1.3.07.06 | 1.3.07.06.x |
maradns / maradns | 1.3.07.09 | 1.3.07.09.x |
maradns / maradns | 1.3.11 | 1.3.11.x |
maradns / maradns | 1.3.09 | 1.3.09.x |
maradns / maradns | 1.3.07.05 | 1.3.07.05.x |
maradns / maradns | 1.3.07.02 | 1.3.07.02.x |
maradns / maradns | 1.3.04 | 1.3.04.x |
maradns / maradns | 1.3.14 | 1.3.14.x |