GlowWorm FW before 1.5.3b4 allows remote attackers to cause a denial of service (kernel panic) via certain DNS responses that trigger infinite recursion in TrueDNS packet parsing, as originally observed with certain login.yahoo.com responses.
Link | Tags |
---|---|
http://glowworm.us/history/release_1_5_3_b4.html | |
http://osvdb.org/43597 | vdb entry |