CERT/CC Vulnerability Note 2002/11/14 追加 VU#844360 Domain Name System (DNS) stub resolver libraries vulnerable to buffer overflows via network name or address lookups http://www.kb.cert.org/vuls/id/844360
CERT/CC Vulnerability Note 2002/11/14 追加 VU#229595 ISC BIND 8 fails to properly handle DNS lookups for non- existent sub-domains when overly large OPT resource records are appended to a query http://www.kb.cert.org/vuls/id/229595
CERT/CC Vulnerability Note 2002/11/14 追加 VU#581682 ISC BIND 8 fails to properly dereference cache SIG RR elements with invalid expiry times from the internal database http://www.kb.cert.org/vuls/id/581682
NetBSD Security Advisory 2002/11/20 追加 NetBSD-SA2002-029 named(8) multiple denial of service and remote execution of code ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-029.txt.asc
SGI Security Advisory 2002/12/05 追加 20021201-01-P Multiple Vulnerabilities in BIND Name Service Daemon ftp://patches.sgi.com/support/free/security/advisories/20021201-01-P
CERT/CC Vulnerability Note 2002/08/06 追加 VU#542971 Multiple vendors' Domain Name System (DNS) stub resolvers vulnerable to buffer overflow via network name and address lookups http://www.kb.cert.org/vuls/id/542971
Caldera International, Inc. Security Advisory 2002/08/09 追加 CSSA-2002-034.1 Linux: local off by one in cvsd ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-034.1.txt
HP Secure OS Software for Linux security bulletins digest 2002/ 10/21 追加 HPSBTL0210-069 Updated glibc packages fix vulnerabilities in resolver http://itrc.hp.com/
SSH : Company : News Room 2002/12/19 追加 SSH Secure Shell products are not exploitable by the key exchange and initialization attacks (VU#389665) http://www.ssh.com/company/newsroom/article/303/
CERT Vulnerability Note VU#157961 PC-cillin "pop3trap.exe" vulnerable to buffer overflow via long string of characters http://www.kb.cert.org/vuls/id/157961
<Microsoft> ▽ Windows XP Windows XPのシェルに含まれる、オーディオ・ファイルからカスタム属性情報を抽出するためにウインドウズ・シェルによって使用される機能に、バッファオーバーフローの脆弱性が発見された。この問題を利用することにより、悪意のあるオーディオファイルを作成することで、任意のコードを実行させることが可能となる。 [更新]