CVE

Id
34027  
CVE No.
CVE-2008-3910  
Status
Candidate  
Description
dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.  
Phase
Assigned (20080904)  
Votes
None (candidate not yet proposed)  
Comments