CVE-2004-0789
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD
Description
Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by triggering a communications loop via (a) DNS query packets with localhost as a spoofed source address, or (b) a response packet that triggers a response packet.
Affected (98)
Show all products
Delegate: Delegate · Dnrd: Dnrd · Don Moore: Mydns · Maradns: Maradns · Pliant: Pliant Dns Server · Posadis: Posadis · Qbik: Wingate · Team Johnlong: Raidendnsd · Axis: 2100 Network Camera, 2110 Network Camera, 2120 Network Camera, 2400 Video Server, 2401 Video Server, 2420 Network Camera, 2460 Network Dvr
Configuration A
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.01 | |
| Version 2.12 | |
| Version 2.12 | |
| Version 3.11 | |
| Version 3.12 | |
| Version 2.12 | |
| Version 3.12 |
References (14)
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.