CVE-2001-0013: Critical severity ISC BIND vulnerability
Published Feb 12, 2001
·Updated
Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.
Affected Software
5 affected components
ISC BIND=4.9.5-p1
ISC BIND=4.9.6
ISC BIND=4.9.3
ISC BIND=4.9.7
ISC BIND=4.9.5
Remediation
Patch Available
Event History
Feb 12, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0013?
CVE-2001-0013 has a high severity rating due to its potential to allow remote attackers to gain root privileges.
2
How do I fix CVE-2001-0013?
To fix CVE-2001-0013, upgrade to a version of BIND that is not vulnerable, specifically versions beyond 4.9.7.
3
Which versions of BIND are affected by CVE-2001-0013?
CVE-2001-0013 affects BIND versions 4.9.3 through 4.9.7, including any patch releases.
4
Who is impacted by CVE-2001-0013?
Organizations running affected versions of BIND may be impacted by CVE-2001-0013.
5
What type of vulnerability is CVE-2001-0013?
CVE-2001-0013 is a format string vulnerability that is exploited via the nslookupComplain function.