Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-4252

EPSS 0.01% · P2
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-4252

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
PowerDNS Recursor 3.1.3 and earlier allows remote attackers to cause a denial of service (resource exhaustion and application crash) via a CNAME record with a zero TTL, which triggers an infinite loop.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
PowerDNS远程拒绝服务及缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
PowerDNS是一款高效的名称服务器。 PowerDNS在处理查询报文时存在多个漏洞,远程攻击者可能利用漏洞对服务器执行拒绝服务或缓冲区溢出攻击。 PowerDNS Recursor在处理TCP DNS查询时没有正确地计算长度,试图将最多4G的查询读入到65535字节的缓冲区。攻击者可以通过发送超长报文触发溢出,导致执行任意代码。此外,PowerDNS Recursor在处理畸形的CNAME记录时还可能会无限的递归,导致耗尽所有分配的栈空间。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-4252

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-4252

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-11-14 · 27 CVEs total

CVE-2006-5895EncapsCMS core/core.php PHP远程文件包含漏洞
CVE-2006-5883Cpanel 多个跨站脚本攻击漏洞
CVE-2006-5882Broadcom BCMWL5.SYS 栈缓冲区溢出
CVE-2006-5881Dynamic Dataworx NuCommunity cl_CatListing.asp SQL注入漏洞
CVE-2006-5880Munch Pro Switch.ASP SQL注入漏洞
CVE-2006-5879ASPPortal default1.asp SQL注入漏洞
CVE-2006-5878Edgewall Trac 跨站请求伪造漏洞
CVE-2006-4251PowerDNS远程拒绝服务及缓冲区溢出漏洞
CVE-2006-5884Microsoft Internet Explorer DirectAnimation ActiveX控件 多个未明漏洞
CVE-2006-5198WinZip FileView ActiveX控件CreateNewFolderFromName方法缓冲区溢出漏洞
CVE-2006-4691Microsoft Windows Workstation服务NetpManageIPCConnect远程栈溢出漏洞(MS06-070)
CVE-2006-4687Microsoft IE HTML渲染内存破坏漏洞(MS06-067)
CVE-2006-3445Microsoft Agent Active控件远程堆溢出漏洞
CVE-2006-4688Microsoft Windows NetWare客户端服务内存破坏漏洞
CVE-2006-5894Rama CMS Lang参数本地文件包含漏洞
CVE-2006-5893StoryStream BaseDir多个远程文件包含漏洞
CVE-2006-5892Aspired2Poll MoreInfo.ASP SQL注入漏洞
CVE-2006-5891Superfreaker Studios UStore detail.asp SQL注入漏洞
CVE-2006-5890Superfreaker Studios USupport detail.asp SQL注入漏洞
CVE-2006-5889BrewBlogger PrintLog.PHP SQL注入漏洞

Showing top 20 of 27 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-4252

No comments yet


Leave a comment