Vulnerability Description
Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nlnetlabs | Unbound | <= 1.4.2 |
Related Weaknesses (CWE)
References
- http://bugs.gentoo.org/show_bug.cgi?id=309117
- http://marc.info/?l=oss-security&m=126876222231747&w=2
- http://osvdb.org/62903
- http://secunia.com/advisories/38888Vendor Advisory
- http://www.openwall.com/lists/oss-security/2010/03/12/3
- http://www.securityfocus.com/bid/38701Patch
- http://www.unbound.net/pipermail/unbound-users/2010-March/001057.htmlPatch
- http://bugs.gentoo.org/show_bug.cgi?id=309117
- http://marc.info/?l=oss-security&m=126876222231747&w=2
- http://osvdb.org/62903
- http://secunia.com/advisories/38888Vendor Advisory
- http://www.openwall.com/lists/oss-security/2010/03/12/3
- http://www.securityfocus.com/bid/38701Patch
- http://www.unbound.net/pipermail/unbound-users/2010-March/001057.htmlPatch
FAQ
What is CVE-2010-0969?
CVE-2010-0969 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
How severe is CVE-2010-0969?
CVE-2010-0969 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-0969?
Check the references section above for vendor advisories and patch information. Affected products include: Nlnetlabs Unbound.