CVE-2002-0651
published 2002-07-03CVE-2002-0651: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of…
PriorityP433high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
13.48%
96.0th percentile
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glibc | < glibc 2.2.5-8 (bookworm) | glibc 2.2.5-8 (bookworm) |
| gnu | glibc | >= 0 < 2.2.5-8 | 2.2.5-8 |
| gnu | glibc | >= 0 < 2.2.5-8 | 2.2.5-8 |
| gnu | glibc | >= 0 < 2.2.5-8 | 2.2.5-8 |
| gnu | glibc | >= 0 < 2.2.5-8 | 2.2.5-8 |
| isc | bind | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2002-06-26·CVSS 7.5
CVE-2002-0651 [HIGH] security flaw
security flaw
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
Debian
CVE-2002-0651: glibc - Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as de...
vendor_debian·2002·CVSS 7.5
CVE-2002-0651 [HIGH] CVE-2002-0651: glibc - Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as de...
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
Scope: local
bookworm: resolved (fixed in 2.2.5-8)
bullseye: resolved (fixed in 2.2.5-8)
forky: resolved (fixed in 2.2.5-8)
sid: resolved (fixed in 2.2.5-8)
trixie: resolved (fixed in 2.2.5-8)
GHSA
GHSA-3hqp-jxgp-f6jm: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a de
ghsa_unreviewed·2022-05-03
CVE-2002-0651 [HIGH] GHSA-3hqp-jxgp-f6jm: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a de
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
OSV
CVE-2002-0651: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a de
osv·2002-07-03·CVSS 7.5
CVE-2002-0651 [HIGH] CVE-2002-0651: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a de
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
No detection rules found.
No public exploits indexed.
ftp://ftp.NetBSD.ORG/pub/NetBSD/security/advisories/NetBSD-SA2002-006.txt.ascftp://ftp.caldera.com/pub/updates/OpenServer/CSSA-2002-SCO.39ftp://ftp.caldera.com/pub/updates/UnixWare/CSSA-2002-SCO.37ftp://patches.sgi.com/support/free/security/advisories/20020701-01-I/http://archives.neohapsis.com/archives/aix/2002-q3/0001.htmlhttp://archives.neohapsis.com/archives/linux/engarde/2002-q3/0002.htmlhttp://archives.neohapsis.com/archives/ntbugtraq/2002-q3/0000.htmlhttp://distro.conectiva.com/atualizacoes/?id=a&anuncio=000507http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:038http://marc.info/?l=bugtraq&m=102513011311504&w=2http://marc.info/?l=bugtraq&m=102520962320134&w=2http://marc.info/?l=bugtraq&m=102579743329251&w=2http://rhn.redhat.com/errata/RHSA-2002-139.htmlhttp://www.cert.org/advisories/CA-2002-19.htmlhttp://www.iss.net/security_center/static/9432.phphttp://www.kb.cert.org/vuls/id/803539http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-043.phphttp://www.pine.nl/advisories/pine-cert-20020601.txthttp://www.redhat.com/support/errata/RHSA-2002-119.htmlhttp://www.redhat.com/support/errata/RHSA-2002-133.htmlhttp://www.redhat.com/support/errata/RHSA-2002-167.htmlhttp://www.redhat.com/support/errata/RHSA-2003-154.htmlhttp://www.securityfocus.com/bid/5100https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4190ftp://ftp.NetBSD.ORG/pub/NetBSD/security/advisories/NetBSD-SA2002-006.txt.ascftp://ftp.caldera.com/pub/updates/OpenServer/CSSA-2002-SCO.39ftp://ftp.caldera.com/pub/updates/UnixWare/CSSA-2002-SCO.37ftp://patches.sgi.com/support/free/security/advisories/20020701-01-I/http://archives.neohapsis.com/archives/aix/2002-q3/0001.htmlhttp://archives.neohapsis.com/archives/linux/engarde/2002-q3/0002.htmlhttp://archives.neohapsis.com/archives/ntbugtraq/2002-q3/0000.htmlhttp://distro.conectiva.com/atualizacoes/?id=a&anuncio=000507http://frontal2.mandriva.com/security/advisories?name=MDKSA-2002:038http://marc.info/?l=bugtraq&m=102513011311504&w=2http://marc.info/?l=bugtraq&m=102520962320134&w=2http://marc.info/?l=bugtraq&m=102579743329251&w=2http://rhn.redhat.com/errata/RHSA-2002-139.htmlhttp://www.cert.org/advisories/CA-2002-19.htmlhttp://www.iss.net/security_center/static/9432.phphttp://www.kb.cert.org/vuls/id/803539http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-043.phphttp://www.pine.nl/advisories/pine-cert-20020601.txthttp://www.redhat.com/support/errata/RHSA-2002-119.htmlhttp://www.redhat.com/support/errata/RHSA-2002-133.htmlhttp://www.redhat.com/support/errata/RHSA-2002-167.htmlhttp://www.redhat.com/support/errata/RHSA-2003-154.htmlhttp://www.securityfocus.com/bid/5100https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4190
2002-07-03
Published