MidnightBSD

Advisories for posadis

CVE-2002-0501 HIGH

Format string vulnerability in log_print() function of Posadis DNS server before version m5pre2 allows local users and possibly remote attackers to execute arbitrary code via format strings that are inserted into logging messages.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
posadis posadis m5pre1
CVE-2003-1441 MEDIUM

Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a denial of service (crash) via a DNS message without a question section, which triggers null dereference.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
posadis posadis 0.50.4
posadis posadis 0.50.6
posadis posadis 0.50.7
posadis posadis 0.50.8
posadis posadis 0.50.5
CVE-2004-0789 MEDIUM

Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by triggering a communications loop via (a) DNS query packets with localhost as a spoofed source address, or (b) a response packet that triggers a response packet.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
axis 2100_network_camera 2.03
delegate delegate 8.4.0
dnrd dnrd 2.3
axis 2120_network_camera 2.41
axis 2420_network_camera 2.40
delegate delegate 8.9
axis 2110_network_camera 2.12
delegate delegate 7.7.0
don_moore mydns 0.6
axis 2120_network_camera 2.32
posadis posadis 0.60.0
axis 2100_network_camera 2.32
delegate delegate 7.8.0
dnrd dnrd 2.10
qbik wingate 4.0.1
axis 2100_network_camera 2.41
posadis posadis 0.60.1
dnrd dnrd 2.0
axis 2420_network_camera 2.32
axis 2420_network_camera 2.31
delegate delegate 7.7.1
axis 2110_network_camera 2.34
delegate delegate 8.9.5
maradns maradns 0.5.30
dnrd dnrd 2.4
axis 2100_network_camera 2.33
axis 2400_video_server 3.12
delegate delegate 8.9.4
dnrd dnrd 1.0
team_johnlong raidendnsd *
maradns maradns 0.5.29
qbik wingate 3.0
posadis posadis 0.50.5
dnrd dnrd 2.8
posadis posadis 0.50.4
qbik wingate 6.0
pliant pliant_dns_server *
axis 2420_network_camera 2.12
dnrd dnrd 1.1
don_moore mydns 0.10.0
dnrd dnrd 2.7
maradns maradns 0.5.28
axis 2420_network_camera 2.41
axis 2401_video_server 3.12
qbik wingate 6.0.1_build_995
dnrd dnrd 2.6
axis 2400_video_server 3.11
axis 2100_network_camera 2.12
delegate delegate 8.9.1
axis 2120_network_camera 2.12
delegate delegate 8.9.2
axis 2100_network_camera 2.02
delegate delegate 8.3.3
qbik wingate 4.1_beta_a
posadis posadis 0.50.7
don_moore mydns 0.9
axis 2100_network_camera 2.01
axis 2120_network_camera 2.30
posadis posadis 0.50.8
axis 2120_network_camera 2.40
delegate delegate 7.9.11
delegate delegate 8.9.3
dnrd dnrd 1.3
delegate delegate 7.8.2
axis 2100_network_camera 2.34
delegate delegate 7.8.1
posadis posadis 0.50.9
dnrd dnrd 2.9
axis 2100_network_camera 2.40
delegate delegate 8.5.0
maradns maradns 0.5.31
axis 2110_network_camera 2.30
axis 2100_network_camera 2.0
axis 2420_network_camera 2.33
dnrd dnrd 1.2
posadis posadis m5pre2
axis 2110_network_camera 2.32
axis 2120_network_camera 2.34
posadis posadis 0.50.6
don_moore mydns 0.7
axis 2100_network_camera 2.30
axis 2110_network_camera 2.40
axis 2120_network_camera 2.31
axis 2420_network_camera 2.30
qbik wingate 6.0.1_build_993
axis 2100_network_camera 2.31
dnrd dnrd 2.2
dnrd dnrd 2.1
dnrd dnrd 2.5
delegate delegate 8.3.4
axis 2110_network_camera 2.31
maradns maradns 0.8.05
don_moore mydns 0.8
posadis posadis m5pre1
dnrd dnrd 1.4
axis 2420_network_camera 2.34
axis 2110_network_camera 2.41
axis 2460_network_dvr 3.12