Unrated severityNVD Advisory· Published Nov 4, 2011· Updated Apr 29, 2026
CVE-2011-3581
CVE-2011-3581
Description
Heap-based buffer overflow in the ldns_rr_new_frm_str_internal function in ldns before 1.6.11 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Resource Record (RR) with an unknown type containing input that is longer than a specified length.
Affected products
26cpe:2.3:a:nlnetlabs:ldns:*:*:*:*:*:*:*:*+ 25 more
- cpe:2.3:a:nlnetlabs:ldns:*:*:*:*:*:*:*:*range: <=1.6.10
- cpe:2.3:a:nlnetlabs:ldns:0.50:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:0.60:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:0.65:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:0.66:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:0.70:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.5.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.0:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.1:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.2:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.3:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.4:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.5:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.6:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.7:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.8:*:*:*:*:*:*:*
- cpe:2.3:a:nlnetlabs:ldns:1.6.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- secunia.com/advisories/46470nvdVendor Advisory
- secunia.com/advisories/46476nvdVendor Advisory
- lists.fedoraproject.org/pipermail/package-announce/2011-October/068091.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2011-October/068201.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2011-October/068239.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2011-10/msg00008.htmlnvd
- nlnetlabs.nl/svn/ldns/tags/release-1.6.11/Changelognvd
- seclists.org/oss-sec/2011/q3/503nvd
- seclists.org/oss-sec/2011/q3/542nvd
- www.nlnetlabs.nl/bugs-script/show_bug.cginvd
- www.securityfocus.com/bid/49748nvd
News mentions
0No linked articles in our index yet.