Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-0024

Опубликовано: 08 янв. 2012
Источник: nvd
CVSS2: 7.8
EPSS Низкий

Описание

MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted queries with the Recursion Desired (RD) bit set.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:maradns:maradns:*:*:*:*:*:*:*:*
Версия до 1.3.07.12 (исключая)
cpe:2.3:a:maradns:maradns:*:*:*:*:*:*:*:*
Версия от 1.4.0 (включая) до 1.4.08 (исключая)

EPSS

Процентиль: 73%
0.00757
Низкий

7.8 High

CVSS2

Дефекты

CWE-400

Связанные уязвимости

ubuntu
около 14 лет назад

MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted queries with the Recursion Desired (RD) bit set.

debian
около 14 лет назад

MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values ...

github
почти 4 года назад

MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted queries with the Recursion Desired (RD) bit set.

EPSS

Процентиль: 73%
0.00757
Низкий

7.8 High

CVSS2

Дефекты

CWE-400