Bug 842466 (CVE-2012-3429)
| Summary: | CVE-2012-3429 bind-dyndb-ldap: named DoS via DNS query with $ in name | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Vincent Danen <vdanen> |
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
| Status: | CLOSED ERRATA | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | atkac, jrusnack, pspacek, security-response-team, vdanen |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2012-08-03 08:42:55 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 841900, 843538, 845038 | ||
| Bug Blocks: | 842467 | ||
|
Description
Vincent Danen
2012-07-23 23:29:32 UTC
Fixed in upstream git via: http://git.fedorahosted.org/git/?p=bind-dyndb-ldap.git;a=commitdiff;h=f345805c73c294db42452ae966c48fbc36c48006 Created bind-dyndb-ldap tracking bugs for this issue Affects: fedora-all [bug 845038] This issue has been addressed in following products: Red Hat Enterprise Linux 6 Via RHSA-2012:1139 https://rhn.redhat.com/errata/RHSA-2012-1139.html bind-dyndb-ldap-1.1.0-0.14.rc1.fc16 has been pushed to the Fedora 16 stable repository. If problems still persist, please make note of it in this bug report. bind-dyndb-ldap-1.1.0-0.14.rc1.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. The flaw mentioned in this bug manifests itself with following error message (it is written to /var/log/messages usually): Jul 30 15:44:23 nightcrawler named[31694]: ldap_convert.c:253: REQUIRE(dns_str_len > dns_idx + 3) failed, back trace Jul 30 15:44:23 nightcrawler named[31694]: #0 0xf0d401 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #1 0x94ada4 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #2 0x323db5 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #3 0x324030 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #4 0x329ff9 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #5 0x3260e2 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #6 0x656f2d in ?? Jul 30 15:44:23 nightcrawler named[31694]: #7 0xf1849f in ?? Jul 30 15:44:23 nightcrawler named[31694]: #8 0xf1ec15 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #9 0xf029d8 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #10 0x96e00b in ?? Jul 30 15:44:23 nightcrawler named[31694]: #11 0xadea49 in ?? Jul 30 15:44:23 nightcrawler named[31694]: #12 0x42fe1e in ?? Jul 30 15:44:23 nightcrawler named[31694]: exiting (due to assertion failure) |