suse · CVE-2012-1667

Quick triage

Priority: high Published: 2021-05-30 13:02:50 UTC Updated: 2026-04-18 19:51:51 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2012-1667 severity important: SUSE including 167 source package names (bind-9.10.3P4-21.1, bind-9.11.2-1.24, …), 230 product×package rows across 35 product lines (SUSE Linux Enterprise Desktop 11 SP2, SUSE Linux Enterprise Desktop 12, … (35 product lines)): Fixed 230.

Description:

ISC BIND 9.x before 9.7.6-P1, 9.8.x before 9.8.3-P1, 9.9.x before 9.9.1-P1, and 9.4-ESV and 9.6-ESV before 9.6-ESV-R7-P1 does not properly handle resource records with a zero-length RDATA section, which allows remote DNS servers to cause a denial of service (daemon crash or data corruption) or obtain sensitive information from process memory via a crafted record.

cvelogic Threat Intelligence