CyberSec.Space Logo
CVEブラウザに戻る

CVE-2004-0460

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0280%
EPSS Percentile27.41th
Published2004年8月6日
Last Modified2026年4月16日

Vulnerability Description

Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multiple hostname options in (1) DISCOVER, (2) OFFER, (3) REQUEST, (4) ACK, or (5) NAK messages, which can generate a long string when writing to a log file.

Affected Platforms (CPE)

🔌
Infoblox

Dns One Appliance

= 2.3.1_r5
🔌
Infoblox

Dns One Appliance

= 2.4.0.8
🔌
Infoblox

Dns One Appliance

= 2.4.0.8a
📦
Isc

Dhcpd

= 3.0.1
📦
Isc

Dhcpd

= 3.0.1
📦
Suse

Suse Email Server

= iii
📦
Suse

Suse Linux Admin Cd For Firewall

All versions
📦
Suse

Suse Linux Connectivity Server

All versions
📦
Suse

Suse Linux Database Server

All versions
📦
Suse

Suse Linux Firewall Cd

All versions
📦
Suse

Suse Linux Office Server

All versions
💻
Mandrakesoft

Mandrake Linux

= 9.0
💻
Mandrakesoft

Mandrake Linux

= 9.1
💻
Mandrakesoft

Mandrake Linux

= 9.1
💻
Mandrakesoft

Mandrake Linux

= 9.2
💻
Mandrakesoft

Mandrake Linux

= 9.2
💻
Mandrakesoft

Mandrake Linux

= 10.0
💻
Mandrakesoft

Mandrake Linux

= 10.0
💻
Redhat

Fedora Core

= core_2.0
💻
Suse

Suse Linux

= 7
💻
Suse

Suse Linux

= 8
💻
Suse

Suse Linux

= 8.0
💻
Suse

Suse Linux

= 8.0
💻
Suse

Suse Linux

= 8.1
💻
Suse

Suse Linux

= 8.2
💻
Suse

Suse Linux

= 9.0
💻
Suse

Suse Linux

= 9.0
💻
Suse

Suse Linux

= 9.1

References & Advisories

関連する脆弱性情報