No-IP DUC Remote code execution vulnerability

Summary
This host has No-IP DUC installed and is prone to remote code execution vulnerability.
Impact
Successful attack could result in remote DNS servers to execute arbitrary code via a crafted DNS response. Impact Level: Application
Solution
Upgrade to latest version of No-IP DUC, http://www.no-ip.com/downloads.php
Insight
The flaw is due to DNS poisoning in the function GetNextLine which fails to do length check.
Affected
No-IP DUC 2.1.7 and prior on Linux
References