~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
PublicDate: 2007-06-26
Candidate: CVE-2007-3409
References:
 http://www.ubuntu.com/usn/usn-483-1
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3409
Description:
 Net::DNS before 0.60, a Perl module, allows remote attackers to cause a
 denial of service (stack consumption) via a malformed compressed DNS packet
 with self-referencing pointers, which triggers an infinite loop.
Ubuntu-Description:
Notes:
Bugs:
dapper_libnet-dns-perl: released (0.53-2ubuntu1)
edgy_libnet-dns-perl: released (0.57-1ubuntu1)
feisty_libnet-dns-perl: released (0.59-1build1.1)
gutsy_libnet-dns-perl: not-affected (0.60-1)
devel_libnet-dns-perl: not-affected (0.60-1)
upstream_libnet-dns-perl: 0.60