CVE-2006-0527

NameCVE-2006-0527
DescriptionBIND 4 (BIND4) and BIND 8 (BIND8), if used as a target forwarder, allows remote attackers to gain privileged access via a "Kashpureff-style DNS cache corruption" attack.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
bindsource(unstable)1:8.4.7-1low

Notes

[sarge] - bind <no-dsa> (Architectual limitatiom, upgrade to BIND 9 as a a fix)
BIND 8 is unsuitable for forwarder use because of its
architecture. Upgrade to BIND 9 as a fix.
This was fixed in sid by documenting it as an unfixable design limitation

Search for package or bug name: Reporting problems