4.3

CVE-2010-0097

ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Isc ≫ Bind Version 9.0
Isc ≫ Bind Version 9.0.0 Update rc1
Isc ≫ Bind Version 9.0.0 Update rc2
Isc ≫ Bind Version 9.0.0 Update rc3
Isc ≫ Bind Version 9.0.0 Update rc4
Isc ≫ Bind Version 9.0.0 Update rc5
Isc ≫ Bind Version 9.0.0 Update rc6
Isc ≫ Bind Version 9.0.1
Isc ≫ Bind Version 9.0.1 Update rc1
Isc ≫ Bind Version 9.0.1 Update rc2
Isc ≫ Bind Version 9.1
Isc ≫ Bind Version 9.1.0 Update rc1
Isc ≫ Bind Version 9.1.1
Isc ≫ Bind Version 9.1.1 Update rc1
Isc ≫ Bind Version 9.1.1 Update rc2
Isc ≫ Bind Version 9.1.1 Update rc3
Isc ≫ Bind Version 9.1.1 Update rc4
Isc ≫ Bind Version 9.1.1 Update rc5
Isc ≫ Bind Version 9.1.1 Update rc6
Isc ≫ Bind Version 9.1.1 Update rc7
Isc ≫ Bind Version 9.1.2
Isc ≫ Bind Version 9.1.2 Update rc1
Isc ≫ Bind Version 9.1.3
Isc ≫ Bind Version 9.1.3 Update rc1
Isc ≫ Bind Version 9.1.3 Update rc2
Isc ≫ Bind Version 9.1.3 Update rc3
Isc ≫ Bind Version 9.2
Isc ≫ Bind Version 9.2.0
Isc ≫ Bind Version 9.2.0 Update a1
Isc ≫ Bind Version 9.2.0 Update a2
Isc ≫ Bind Version 9.2.0 Update a3
Isc ≫ Bind Version 9.2.0 Update b1
Isc ≫ Bind Version 9.2.0 Update b2
Isc ≫ Bind Version 9.2.0 Update rc1
Isc ≫ Bind Version 9.2.0 Update rc10
Isc ≫ Bind Version 9.2.0 Update rc2
Isc ≫ Bind Version 9.2.0 Update rc3
Isc ≫ Bind Version 9.2.0 Update rc4
Isc ≫ Bind Version 9.2.0 Update rc5
Isc ≫ Bind Version 9.2.0 Update rc6
Isc ≫ Bind Version 9.2.0 Update rc7
Isc ≫ Bind Version 9.2.0 Update rc8
Isc ≫ Bind Version 9.2.0 Update rc9
Isc ≫ Bind Version 9.2.1
Isc ≫ Bind Version 9.2.1 Update rc1
Isc ≫ Bind Version 9.2.1 Update rc2
Isc ≫ Bind Version 9.2.2
Isc ≫ Bind Version 9.2.2 Update p2
Isc ≫ Bind Version 9.2.2 Update p3
Isc ≫ Bind Version 9.2.2 Update rc1
Isc ≫ Bind Version 9.2.3
Isc ≫ Bind Version 9.2.3 Update rc1
Isc ≫ Bind Version 9.2.3 Update rc2
Isc ≫ Bind Version 9.2.3 Update rc3
Isc ≫ Bind Version 9.2.3 Update rc4
Isc ≫ Bind Version 9.2.4
Isc ≫ Bind Version 9.2.4 Update rc2
Isc ≫ Bind Version 9.2.4 Update rc3
Isc ≫ Bind Version 9.2.4 Update rc4
Isc ≫ Bind Version 9.2.4 Update rc5
Isc ≫ Bind Version 9.2.4 Update rc6
Isc ≫ Bind Version 9.2.4 Update rc7
Isc ≫ Bind Version 9.2.4 Update rc8
Isc ≫ Bind Version 9.2.5
Isc ≫ Bind Version 9.2.5 Update b2
Isc ≫ Bind Version 9.2.5 Update rc1
Isc ≫ Bind Version 9.2.6
Isc ≫ Bind Version 9.2.6 Update rc1
Isc ≫ Bind Version 9.2.7
Isc ≫ Bind Version 9.2.7 Update rc1
Isc ≫ Bind Version 9.2.7 Update rc2
Isc ≫ Bind Version 9.2.7 Update rc3
Isc ≫ Bind Version 9.2.8
Isc ≫ Bind Version 9.2.9
Isc ≫ Bind Version 9.2.9 Update rc1
Isc ≫ Bind Version 9.3
Isc ≫ Bind Version 9.3.0
Isc ≫ Bind Version 9.3.0 Update b2
Isc ≫ Bind Version 9.3.0 Update b3
Isc ≫ Bind Version 9.3.0 Update b4
Isc ≫ Bind Version 9.3.0 Update rc1
Isc ≫ Bind Version 9.3.0 Update rc2
Isc ≫ Bind Version 9.3.0 Update rc3
Isc ≫ Bind Version 9.3.0 Update rc4
Isc ≫ Bind Version 9.3.1
Isc ≫ Bind Version 9.3.1 Update b2
Isc ≫ Bind Version 9.3.1 Update rc1
Isc ≫ Bind Version 9.3.2
Isc ≫ Bind Version 9.3.2 Update rc1
Isc ≫ Bind Version 9.3.3
Isc ≫ Bind Version 9.3.3 Update rc1
Isc ≫ Bind Version 9.3.3 Update rc2
Isc ≫ Bind Version 9.3.3 Update rc3
Isc ≫ Bind Version 9.3.4
Isc ≫ Bind Version 9.3.5
Isc ≫ Bind Version 9.3.5 Update rc1
Isc ≫ Bind Version 9.3.5 Update rc2
Isc ≫ Bind Version 9.3.6
Isc ≫ Bind Version 9.3.6 Update rc1
Isc ≫ Bind Version 9.4
Isc ≫ Bind Version 9.4 SwEdition esv
Isc ≫ Bind Version 9.4 Update b1 SwEdition esv
Isc ≫ Bind Version 9.4 Update r1 SwEdition esv
Isc ≫ Bind Version 9.4 Update r2 SwEdition esv
Isc ≫ Bind Version 9.4 Update r3 SwEdition esv
Isc ≫ Bind Version 9.4 Update r4 SwEdition esv
Isc ≫ Bind Version 9.4 Update r4-p1 SwEdition esv
Isc ≫ Bind Version 9.4 Update r5 SwEdition esv
Isc ≫ Bind Version 9.4 Update r5-b1 SwEdition esv
Isc ≫ Bind Version 9.4 Update r5-p1 SwEdition esv
Isc ≫ Bind Version 9.4 Update r5-rc1 SwEdition esv
Isc ≫ Bind Version 9.4.0
Isc ≫ Bind Version 9.4.0 Update a1
Isc ≫ Bind Version 9.4.0 Update a2
Isc ≫ Bind Version 9.4.0 Update a3
Isc ≫ Bind Version 9.4.0 Update a4
Isc ≫ Bind Version 9.4.0 Update a5
Isc ≫ Bind Version 9.4.0 Update a6
Isc ≫ Bind Version 9.4.0 Update b1
Isc ≫ Bind Version 9.4.0 Update b2
Isc ≫ Bind Version 9.4.0 Update b3
Isc ≫ Bind Version 9.4.0 Update b4
Isc ≫ Bind Version 9.4.0 Update rc1
Isc ≫ Bind Version 9.4.0 Update rc2
Isc ≫ Bind Version 9.4.1
Isc ≫ Bind Version 9.4.2
Isc ≫ Bind Version 9.4.2 Update rc1
Isc ≫ Bind Version 9.4.2 Update rc2
Isc ≫ Bind Version 9.4.3
Isc ≫ Bind Version 9.4.3 Update b1
Isc ≫ Bind Version 9.4.3 Update b2
Isc ≫ Bind Version 9.4.3 Update b3
Isc ≫ Bind Version 9.4.3 Update p2
Isc ≫ Bind Version 9.4.3 Update rc1
Isc ≫ Bind Version 9.5
Isc ≫ Bind Version 9.5.0
Isc ≫ Bind Version 9.5.0 Update a1
Isc ≫ Bind Version 9.5.0 Update a2
Isc ≫ Bind Version 9.5.0 Update a3
Isc ≫ Bind Version 9.5.0 Update a4
Isc ≫ Bind Version 9.5.0 Update a5
Isc ≫ Bind Version 9.5.0 Update a6
Isc ≫ Bind Version 9.5.0 Update a7
Isc ≫ Bind Version 9.5.0 Update b1
Isc ≫ Bind Version 9.5.0 Update b2
Isc ≫ Bind Version 9.5.0 Update b3
Isc ≫ Bind Version 9.5.0 Update p1
Isc ≫ Bind Version 9.5.0 Update p2
Isc ≫ Bind Version 9.5.0 Update p2_w1
Isc ≫ Bind Version 9.5.0 Update p2_w2
Isc ≫ Bind Version 9.5.0 Update rc1
Isc ≫ Bind Version 9.5.1
Isc ≫ Bind Version 9.5.1 Update b1
Isc ≫ Bind Version 9.5.1 Update b2
Isc ≫ Bind Version 9.5.1 Update b3
Isc ≫ Bind Version 9.5.1 Update rc1
Isc ≫ Bind Version 9.5.1 Update rc2
Isc ≫ Bind Version 9.5.2
Isc ≫ Bind Version 9.5.2 Update b1
Isc ≫ Bind Version 9.5.2 Update p1
Isc ≫ Bind Version 9.6 SwEdition esv
Isc ≫ Bind Version 9.6 Update r1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r2 SwEdition esv
Isc ≫ Bind Version 9.6 Update r3 SwEdition esv
Isc ≫ Bind Version 9.6 Update r4 SwEdition esv
Isc ≫ Bind Version 9.6 Update r4_p1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r5 SwEdition esv
Isc ≫ Bind Version 9.6 Update r5_b1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r5_p1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r6 SwEdition esv
Isc ≫ Bind Version 9.6 Update r6_b1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r6_rc1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r6_rc2 SwEdition esv
Isc ≫ Bind Version 9.6 Update r7 SwEdition esv
Isc ≫ Bind Version 9.6 Update r7_p1 SwEdition esv
Isc ≫ Bind Version 9.6 Update r7_p2 SwEdition esv
Isc ≫ Bind Version 9.6 Update r9 SwEdition esv
Isc ≫ Bind Version 9.6 Update r9_p1 SwEdition esv
Isc ≫ Bind Version 9.6.0
Isc ≫ Bind Version 9.6.0 Update a1
Isc ≫ Bind Version 9.6.0 Update b1
Isc ≫ Bind Version 9.6.0 Update p1
Isc ≫ Bind Version 9.6.0 Update rc1
Isc ≫ Bind Version 9.6.0 Update rc2
Isc ≫ Bind Version 9.6.1
Isc ≫ Bind Version 9.6.1 Update b1
Isc ≫ Bind Version 9.6.1 Update p1
Isc ≫ Bind Version 9.6.1 Update p2
Isc ≫ Bind Version 9.7.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.36% 0.948
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

https://rhn.redhat.com/errata/RHSA-2010-0095.html
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04952488
http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018
http://www.vupen.com/english/advisories/2010/0622
ftp://ftp.sco.com/pub/unixware7/714/security/p535243_uw7/p535243b.txt
http://secunia.com/advisories/39334
http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html
http://secunia.com/advisories/38219
Vendor Advisory
http://secunia.com/advisories/38240
Vendor Advisory
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021798.1-1
http://support.apple.com/kb/HT5002
http://www.ubuntu.com/usn/USN-888-1
http://www.vupen.com/english/advisories/2010/0176
Vendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034196.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034202.html
http://marc.info/?l=bugtraq&m=127195582210247&w=2
http://secunia.com/advisories/38169
Vendor Advisory
http://secunia.com/advisories/39582
http://secunia.com/advisories/40086
http://securitytracker.com/id?1023474
http://www.debian.org/security/2010/dsa-2054
http://www.kb.cert.org/vuls/id/360341
US Government Resource
http://www.mandriva.com/security/advisories?name=MDVSA-2010:021
http://www.osvdb.org/61853
http://www.securityfocus.com/bid/37865
http://www.vupen.com/english/advisories/2010/0981
http://www.vupen.com/english/advisories/2010/1352
https://bugzilla.redhat.com/show_bug.cgi?id=554851
https://exchange.xforce.ibmcloud.com/vulnerabilities/55753
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12205
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7212
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7430
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9357
https://rhn.redhat.com/errata/RHSA-2010-0062.html
https://www.isc.org/advisories/CVE-2010-0097