CVE-2001-0011: Buffer Overflow
Published Feb 12, 2001
·Updated
Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
Affected Software
5 affected components
ISC BIND=4.9.3
ISC BIND=4.9.5
ISC BIND=4.9.5-p1
ISC BIND=4.9.6
ISC BIND=4.9.7
Remediation
Patch Available
Event History
Feb 12, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0011?
CVE-2001-0011 is considered a critical vulnerability due to the potential for remote attackers to gain root privileges.
2
How do I fix CVE-2001-0011?
To fix CVE-2001-0011, update BIND to a patched version that resolves the buffer overflow issue.
3
What versions of BIND are affected by CVE-2001-0011?
CVE-2001-0011 affects BIND versions 4.9.3, 4.9.5, 4.9.6, and 4.9.7.
4
Can CVE-2001-0011 be exploited remotely?
Yes, CVE-2001-0011 can be exploited remotely by attackers to execute arbitrary code.
5
What is BIND's nslookupComplain function?
The nslookupComplain function in BIND is responsible for handling certain name resolution queries, and its buffer overflow vulnerability can lead to system compromise.