CVE-2002-1232

NameCVE-2002-1232
DescriptionMemory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-180

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
nis (PTS)bullseye4.4fixed
sid, trixie, bookworm4.5fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
nissourcewoody3.9-6.1DSA-180
nissource(unstable)3.9-6.2

Search for package or bug name: Reporting problems