CVE-2005-0036: Medium severity Delegate DeleGate vulnerability
The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0036?
CVE-2005-0036 has been classified as a Denial of Service vulnerability that can lead to an infinite loop in affected software.
How do I fix CVE-2005-0036?
To fix CVE-2005-0036, upgrade to DeleGate version 8.10.3 or later, or apply any available patches from the vendor.
Which versions of DeleGate are affected by CVE-2005-0036?
CVE-2005-0036 affects DeleGate versions up to and including 8.10.2 and several specific earlier versions.
What impact does CVE-2005-0036 have on systems?
The impact of CVE-2005-0036 is denial of service, potentially making the affected DNS service unresponsive to requests.
Is CVE-2005-0036 easy to exploit?
CVE-2005-0036 can be exploited remotely by sending specifically crafted DNS packets, thus posing a significant risk.