Unrated severityNVD Advisory· Published Jan 17, 2003· Updated Apr 16, 2026
CVE-2003-0026
CVE-2003-0026
Description
Multiple stack-based buffer overflows in the error handling routines of the minires library, as used in the NSUPDATE capability for ISC DHCPD 3.0 through 3.0.1RC10, allow remote attackers to execute arbitrary code via a DHCP message containing a long hostname.
Affected products
9cpe:2.3:a:isc:dhcpd:3.0:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:isc:dhcpd:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc1:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc2:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc3:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc4:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc5:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc6:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc7:*:*:*:*:*:*
- cpe:2.3:a:isc:dhcpd:3.0.1:rc8:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
13- www.cert.org/advisories/CA-2003-01.htmlnvdPatchThird Party AdvisoryUS Government Resource
- www.debian.org/security/2003/dsa-231nvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/284857nvdPatchThird Party AdvisoryUS Government Resource
- www.redhat.com/support/errata/RHSA-2003-011.htmlnvdPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2003-01/0250.htmlnvd
- distro.conectiva.com.br/atualizacoes/nvd
- www.ciac.org/ciac/bulletins/n-031.shtmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.openpkg.com/security/advisories/OpenPKG-SA-2003.002.htmlnvd
- www.securityfocus.com/bid/6627nvd
- www.securitytracker.com/idnvd
- www.suse.com/de/security/2003_006_dhcp.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/11073nvd
News mentions
0No linked articles in our index yet.