Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PADL Software nss_ldap DNS Query Response Denial of Service Vulnerability

A vulnerability has been discovered in nss_ldap related to the handling of DNS queries.

It has been reported that nss_ldap fails to verify that DNS query responses have been truncated. Processing a truncated query response may result in nss_ldap reading beyond valid memory. This could cause the nss_ldap process to crash. It is unlikely that this is exploitable to execute arbitrary code, however this is not confirmed.







 

Privacy Statement
Copyright 2009, SecurityFocus