CVE-2010-2444

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/06/2010
Last modified:
11/04/2025

Description

parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) character, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted csv2 zone file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:maradns:maradns:1.3.03:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.04:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.05:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.06:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.01:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.02:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.03:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.04:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.05:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.06:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.07:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.08:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.07.09:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.08:*:*:*:*:*:*:*
cpe:2.3:a:maradns:maradns:1.3.09:*:*:*:*:*:*:*