Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux

CVE-2003-0914
CVE information
Published
Last Modified
CVSSv2.0 Severity
Impact Analysis
Description
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value..
CVSSv2.0 Score
- Severity
- Medium
- Base Score
- 4.3/10
- Exploit Score
- 8.6/10
- Access Vector
- Network
- Access Complexity
- Medium
- Authentication Required
- None
- Impact Score
- 2.9/10
- Confidentiality Impact
- None
- Availability Impact
- None
- Integrity Impact
- Partial
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:a:isc:bind:8.4.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.2.5:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.2:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:nixu:namesurfer:suite_3.0.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.4:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.2.7:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.2.4:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.2.6:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.2.3:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.3:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.5:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:nixu:namesurfer:standard_3.0.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.3.6:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:isc:bind:8.4:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:netbsd:netbsd:1.6:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:hp:hp-ux:11.11:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1_pk3_bl17:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1_pk4_bl18:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:netbsd:netbsd:current:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:netbsd:netbsd:1.6.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1b_pk1_bl1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:sunos:5.7:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0f_pk6_bl17:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a_pk3_bl3:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a_pk4_bl21:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:solaris:9.0:*:sparc:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:solaris:9.0:*:x86:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0f:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1_pk5_bl19:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.7:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.8:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sco:unixware:7.1.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0g:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0g_pk3_bl17:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.4:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.5:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:sunos:5.8:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0f_pk8_bl22:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1_pk6_bl20:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:hp:hp-ux:11.00:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:solaris:7.0:*:x86:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.6:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.6.2:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a_pk5_bl23:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1b:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0g_pk4_bl22:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a_pk1_bl1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a_pk2_bl2:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:ibm:aix:5.1l:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:sun:solaris:8.0:*:x86:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:4.0f_pk7_bl18:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1a:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:compaq:tru64:5.1b_pk2_bl22:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:4.9:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:* |
Yes
|
- | - |
References
- http://www.kb.cert.org/vuls/id/734644
- http://www.debian.org/security/2004/dsa-409
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/57434
- http://www.trustix.org/errata/misc/2003/TSL-2003-0044-bind.asc.txt
- ftp://ftp.sco.com/pub/updates/UnixWare/CSSA-2003-SCO.33/CSSA-2003-SCO.33.txt
- ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2004-003.0/CSSA-2004-003.0.txt
- http://secunia.com/advisories/10542
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2