Isc

Bind

181 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.3%
  • Veröffentlicht 30.10.2019 14:15:11
  • Zuletzt bearbeitet 21.11.2024 04:09:17

While backporting a feature for a newer branch of BIND9, RedHat introduced a path leading to an assertion failure in buffer.c:420. Affects RedHat versions bind-9.9.4-65.el7 -> bind-9.9.4-72.el7. No ISC releases are affected. Other packages from other...

  • EPSS 0.66%
  • Veröffentlicht 17.10.2019 20:15:12
  • Zuletzt bearbeitet 21.11.2024 04:46:31

Mirror zones are a BIND feature allowing recursive servers to pre-cache zone data provided by other servers. A mirror zone is similar to a zone of type secondary, except that its data is subject to DNSSEC validation before being used in answers, as i...

  • EPSS 1.35%
  • Veröffentlicht 17.10.2019 20:15:12
  • Zuletzt bearbeitet 21.11.2024 04:46:31

A defect in code added to support QNAME minimization can cause named to exit with an assertion failure if a forwarder returns a referral rather than resolving the query. This affects BIND versions 9.14.0 up to 9.14.6, and 9.15.0 up to 9.15.4.

  • EPSS 1.06%
  • Veröffentlicht 09.10.2019 16:15:17
  • Zuletzt bearbeitet 21.11.2024 04:46:30

An error in the EDNS Client Subnet (ECS) feature for recursive resolvers can cause BIND to exit with an assertion failure when processing a response that has malformed RRSIGs. Versions affected: BIND 9.10.5-S1 -> 9.11.6-S1 of BIND 9 Supported Preview...

  • EPSS 1.64%
  • Veröffentlicht 09.10.2019 16:15:17
  • Zuletzt bearbeitet 21.11.2024 04:46:30

A race condition which may occur when discarding malformed packets can result in BIND exiting due to a REQUIRE assertion failure in dispatch.c. Versions affected: BIND 9.11.0 -> 9.11.7, 9.12.0 -> 9.12.4-P1, 9.14.0 -> 9.14.2. Also all releases of the ...

  • EPSS 0.6%
  • Veröffentlicht 09.10.2019 16:15:16
  • Zuletzt bearbeitet 21.11.2024 04:46:30

Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if the zones are writable Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P2, 9.12.0 -> 9.12.3-P2, and versions 9.9.3-S1 -> 9.11.5-S3 of BIND 9 ...

  • EPSS 19.1%
  • Veröffentlicht 09.10.2019 16:15:16
  • Zuletzt bearbeitet 21.11.2024 04:46:30

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where this might occur is i...

  • EPSS 1.06%
  • Veröffentlicht 09.10.2019 16:15:16
  • Zuletzt bearbeitet 21.11.2024 04:46:30

In BIND Supported Preview Edition, an error in the nxdomain-redirect feature can occur in versions which support EDNS Client Subnet (ECS) features. In those versions which have ECS support, enabling nxdomain-redirect is likely to lead to BIND exiting...

  • EPSS 0.58%
  • Veröffentlicht 09.10.2019 16:15:14
  • Zuletzt bearbeitet 21.11.2024 04:09:18

"managed-keys" is a feature which allows a BIND resolver to automatically maintain the keys used by trust anchors which operators configure for use in DNSSEC validation. Due to an error in the managed-keys feature it is possible for a BIND server whi...

  • EPSS 1.5%
  • Veröffentlicht 09.10.2019 16:15:13
  • Zuletzt bearbeitet 21.11.2024 04:09:17

By design, BIND is intended to limit the number of TCP clients that can be connected at any given time. The number of allowed connections is a tunable parameter which, if unset, defaults to a conservative value for most servers. Unfortunately, the co...