VYPR
Unrated severityNVD Advisory· Published Jan 17, 2003· Updated Apr 16, 2026

CVE-2003-0026

CVE-2003-0026

Description

Multiple stack-based buffer overflows in the error handling routines of the minires library, as used in the NSUPDATE capability for ISC DHCPD 3.0 through 3.0.1RC10, allow remote attackers to execute arbitrary code via a DHCP message containing a long hostname.

Affected products

9
  • Isc/Dhcpd9 versions
    cpe:2.3:a:isc:dhcpd:3.0:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:a:isc:dhcpd:3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc1:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc2:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc3:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc4:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc5:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc6:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc7:*:*:*:*:*:*
    • cpe:2.3:a:isc:dhcpd:3.0.1:rc8:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

13

News mentions

0

No linked articles in our index yet.