CVE-2010-2444 - CVE House
Back to Database
Status published Medium CVE-2010-2444

parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does...

Vulnerability Description

parse/Csv2_parse.c in MaraDNS 1.3.03, and other versions before 1.4.03, does not properly handle hostnames that do not end in a "." (dot) character, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted csv2 zone file.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-2444

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

maradns
Vulnerable Versions:
1.3.03, 1.3.04, 1.3.05, 1.3.06, 1.3.07.01, 1.3.07.02, 1.3.07.03, 1.3.07.04, 1.3.07.05, 1.3.07.06, 1.3.07.07, 1.3.07.08, 1.3.07.09, 1.3.08, 1.3.09, 1.3.10, 1.3.11, 1.3.12, 1.3.13, 1.3.14, 1.4.01, 1.4.02

Timeline

Official Publish: June 25th, 2010
Last Modified: September 17th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.