5

CVE-2012-1033

The resolver in ISC BIND 9 through 9.8.1-P1 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trigger continued resolvability of revoked domain names via a "ghost domain names" attack.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Isc ≫ Bind Version 9.0
Isc ≫ Bind Version 9.0.1
Isc ≫ Bind Version 9.1
Isc ≫ Bind Version 9.1.1
Isc ≫ Bind Version 9.1.2
Isc ≫ Bind Version 9.1.3
Isc ≫ Bind Version 9.2
Isc ≫ Bind Version 9.2.0
Isc ≫ Bind Version 9.2.1
Isc ≫ Bind Version 9.2.2
Isc ≫ Bind Version 9.2.2 Update p3
Isc ≫ Bind Version 9.2.3
Isc ≫ Bind Version 9.2.4
Isc ≫ Bind Version 9.2.5
Isc ≫ Bind Version 9.2.6
Isc ≫ Bind Version 9.2.7
Isc ≫ Bind Version 9.3
Isc ≫ Bind Version 9.3.0
Isc ≫ Bind Version 9.3.1
Isc ≫ Bind Version 9.3.2
Isc ≫ Bind Version 9.3.3
Isc ≫ Bind Version 9.4
Isc ≫ Bind Version 9.4.0
Isc ≫ Bind Version 9.4.0 Update rc1
Isc ≫ Bind Version 9.4.1
Isc ≫ Bind Version 9.4.2
Isc ≫ Bind Version 9.4.3
Isc ≫ Bind Version 9.4.3 Update rc1
Isc ≫ Bind Version 9.5
Isc ≫ Bind Version 9.5.0
Isc ≫ Bind Version 9.5.0 Update rc1
Isc ≫ Bind Version 9.5.1
Isc ≫ Bind Version 9.5.1 Update rc1
Isc ≫ Bind Version 9.5.1 Update rc2
Isc ≫ Bind Version 9.6.0
Isc ≫ Bind Version 9.6.0 Update p1
Isc ≫ Bind Version 9.6.0 Update rc1
Isc ≫ Bind Version 9.6.0 Update rc2
Isc ≫ Bind Version 9.7.0
Isc ≫ Bind Version 9.7.0 Update b1
Isc ≫ Bind Version 9.7.0 Update p1
Isc ≫ Bind Version 9.7.0 Update p2
Isc ≫ Bind Version 9.7.0 Update rc1
Isc ≫ Bind Version 9.7.0 Update rc2
Isc ≫ Bind Version 9.7.1
Isc ≫ Bind Version 9.7.1 Update p1
Isc ≫ Bind Version 9.7.1 Update p2
Isc ≫ Bind Version 9.7.1 Update rc1
Isc ≫ Bind Version 9.7.2
Isc ≫ Bind Version 9.7.2 Update p1
Isc ≫ Bind Version 9.7.2 Update p2
Isc ≫ Bind Version 9.7.2 Update p3
Isc ≫ Bind Version 9.7.2 Update rc1
Isc ≫ Bind Version 9.7.3
Isc ≫ Bind Version 9.7.3 Update b1
Isc ≫ Bind Version 9.7.3 Update p1
Isc ≫ Bind Version 9.7.3 Update rc1
Isc ≫ Bind Version 9.7.4
Isc ≫ Bind Version 9.7.4 Update b1
Isc ≫ Bind Version 9.8.0
Isc ≫ Bind Version 9.8.0 Update a1
Isc ≫ Bind Version 9.8.0 Update b1
Isc ≫ Bind Version 9.8.0 Update p1
Isc ≫ Bind Version 9.8.0 Update p2
Isc ≫ Bind Version 9.8.0 Update p4
Isc ≫ Bind Version 9.8.0 Update rc1
Isc ≫ Bind Version 9.8.1
Isc ≫ Bind Version 9.8.1 Update b1
Isc ≫ Bind Version 9.8.1 Update b2
Isc ≫ Bind Version 9.8.1 Update b3
Isc ≫ Bind Version 9.8.1 Update p1
Isc ≫ Bind Version 9.8.1 Update rc1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 13.54% 0.96
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=135638082529878&w=2
http://osvdb.org/78916
http://rhn.redhat.com/errata/RHSA-2012-0717.html
http://secunia.com/advisories/47884
http://www.kb.cert.org/vuls/id/542123
US Government Resource
http://www.securityfocus.com/bid/51898
http://www.securitytracker.com/id?1026647
https://exchange.xforce.ibmcloud.com/vulnerabilities/73053
https://hermes.opensuse.org/messages/15136456
https://hermes.opensuse.org/messages/15136477
https://www.isc.org/software/bind/advisories/cve-2012-1033
Vendor Advisory