CVE-2016-2120
published 2018-11-01CVE-2016-2120: An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by…
PriorityP434medium6.5CVSS 3.0
AVNACLPRLUINSUCNINAH
EPSS
2.00%
78.5th percentile
An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for that record. The issue is due to an integer overflow when checking if the content of the record matches the expected size, allowing an attacker to cause a read past the buffer boundary.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | pdns | < pdns 4.0.2-1 (bookworm) | pdns 4.0.2-1 (bookworm) |
| open-xchange | pdns | >= 0 < 4.0.2-1 | 4.0.2-1 |
| open-xchange | pdns | >= 0 < 4.0.2-1 | 4.0.2-1 |
| open-xchange | pdns | >= 0 < 4.0.2-1 | 4.0.2-1 |
| open-xchange | pdns | >= 0 < 4.0.2-1 | 4.0.2-1 |
| powerdns | authoritative | <= 3.4.10 | — |
| powerdns | authoritative | 4.0.0 – 4.0.1 | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2016-2120: pdns - An issue has been found in PowerDNS Authoritative Server versions up to and incl...
vendor_debian·2016·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120: pdns - An issue has been found in PowerDNS Authoritative Server versions up to and incl...
An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for that record. The issue is due to an integer overflow when checking if the content of the record matches the expected size, allowing an attacker to cause a read past the buffer boundary.
Scope: local
bookworm: resolved (fixed in 4.0.2-1)
bullseye: resolved (fixed in 4.0.2-1)
forky: resolved (fixed in 4.0.2-1)
sid: resolved (fixed in 4.0.2-1)
trixie: resolved (fixed in 4.0.2-1)
GHSA
GHSA-mq8j-4764-x4h8: An issue has been found in PowerDNS Authoritative Server versions up to and including 3
ghsa_unreviewed·2022-05-13
CVE-2016-2120 [MEDIUM] CWE-190 GHSA-mq8j-4764-x4h8: An issue has been found in PowerDNS Authoritative Server versions up to and including 3
An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for that record. The issue is due to an integer overflow when checking if the content of the record matches the expected size, allowing an attacker to cause a read past the buffer boundary.
OSV
CVE-2016-2120: An issue has been found in PowerDNS Authoritative Server versions up to and including 3
osv·2018-11-01·CVSS 6.5
CVE-2016-2120 [MEDIUM] CVE-2016-2120: An issue has been found in PowerDNS Authoritative Server versions up to and including 3
An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for that record. The issue is due to an integer overflow when checking if the content of the record matches the expected size, allowing an attacker to cause a read past the buffer boundary.
Suricata
ET WEB_SPECIFIC_APPS Cisco ASA WebVPN Cross-Site Scripting (CVE-2014-2120)
suricata·2024-11-19·CVSS 6.1
CVE-2014-2120 [MEDIUM] ET WEB_SPECIFIC_APPS Cisco ASA WebVPN Cross-Site Scripting (CVE-2014-2120)
ET WEB_SPECIFIC_APPS Cisco ASA WebVPN Cross-Site Scripting (CVE-2014-2120)
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Cisco ASA WebVPN Cross-Site Scripting (CVE-2014-2120)"; flow:established,to_server; http.method; content:"GET"; http.uri; content:"/+CSCOE+/logon.html|3f|"; fast_pattern; content:"reason|3d|2"; content:"username|3d|"; pcre:"/^.*?(?:[\x20\x27\x22\x2f]on[a-z]+\x3d|(?:[^\x2f]s(?:cript[\x3a\x3e\x20\x2f]|tyle\x3d)|\x3ciframe[\x20\x2f]))/R"; reference:url,seclists.org/fulldisclosure/2016/Feb/82; reference:cve,2014-2120; classtype:web-application-attack; sid:2057723; rev:1; metadata:affected_product Cisco_ASA, attack_target Server, tls_state TLSDecrypt, created_at 2024_11_19, cve CVE_2014_2120, deployment Perimeter, deployment Internal, deployment SSLDec
No public exploits indexed.
Bugzilla
CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
bugzilla·2017-01-16·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects mu
Bugzilla
CVE-2016-2120 pdns: crafted zone record can cause a denial of service
bugzilla·2017-01-16·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120 pdns: crafted zone record can cause a denial of service
CVE-2016-2120 pdns: crafted zone record can cause a denial of service
An issue has been found in PowerDNS Authoritative Server allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending a DNS query for that record. The issue is due to an integer overflow when checking if the content of the record matches the expected size, allowing an attacker to cause a read past the buffer boundary.
References:
https://doc.powerdns.com/md/security/powerdns-advisory-2016-05/
http://seclists.org/oss-sec/2017/q1/97
Discussion:
Created pdns tracking bugs for this issue:
Affects: fedora-all [bug 1413518]
Affects: epel-all [bug 1413520]
---
Created pdns-recursor tracking bugs for this issue:
Affects: fedora-all [bug 1413519]
Affec
Bugzilla
CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
bugzilla·2017-01-16·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppo
Bugzilla
CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
bugzilla·2017-01-16·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
CVE-2016-2120 pdns: Multiple security vulnerabilities fixed in latest versions [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supporte
Bugzilla
CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
bugzilla·2017-01-16·CVSS 7.5
CVE-2016-2120 [HIGH] CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
CVE-2016-2120 pdns-recursor: pdns: Multiple security vulnerabilities fixed in latest versions [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects
2018-11-01
Published