Back

CVE-2002-0029

Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other derived libraries such as BSD libc and GNU glibc, allow remote attackers to execute arbitrary code via DNS server responses that trigger the overflow in the (1) getnetbyname, or (2) getnetbyaddr functions, aka "LIBRESOLV: buffer overrun" and a different vulnerability than CVE-2002-0684.

Published: Nov 29, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (18)

Vendor Product Version
isc bind 4.9.2
isc bind 4.9.3
isc bind 4.9.4
isc bind 4.9.5
isc bind 4.9.6
isc bind 4.9.7
isc bind 4.9.8
isc bind 4.9.9
isc bind 4.9.10
astaro security_linux 2.0.23
astaro security_linux 2.0.24
astaro security_linux 2.0.25
astaro security_linux 2.0.26
astaro security_linux 2.0.27
astaro security_linux 2.0.30
astaro security_linux 3.2.0
astaro security_linux 3.2.10
astaro security_linux 3.2.11

GitHub Security Advisory GHSA-wc7g-r6mj-mjf6

Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 9.86%

Top 5% most likely to be exploited

Threat Score 33 / 100

Data Sources

NVD EPSS GitHub