lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060316074706.28FB7F06@lists.grok.org.uk> Date: Thu Mar 16 07:55:14 2006 From: sq5bpf at andra.com.pl (sq5bpf@...ra.com.pl) Subject: -advisory- % =Thu Mar 16 02:47:00 EST 2006= % Directory Transversal in ISC BIND -advisory- % =Thu Mar 16 02:47:00 EST 2006= % Directory Transversal in ISC BIND 8======D~~~~~~~~ [+] DESCRIPTION Remote exploitation of a directory traversal vulnerability in ISC BIND could allow attackers to overwrite or view arbitrary files with user-supplied contents. 8======D~~~~~~~~ [+] HISTORY 2-20-2006 [+] Vendor Notification. 1-8-2006 [+] Vendor Reply. 3-16-2006 [+] Public Disclosure. 8======D~~~~~~~~ [+] VENDOR RESPONSE ISC BIND was presented no information. 8======D~~~~~~~~ [+] CVE INFORMATION The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-731420 to this issue 8======D~~~~~~~~ CONTACT Jacek Lipkowski sq5bpf@...ra.com.pl GSAE CCE CEH CSFA SSP-CNSA SSP-MPA GWAS SSCP