Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-8618

Опубликовано: 17 июн. 2020
Источник: debian
EPSS Низкий

Описание

An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bind9fixed1:9.16.4-1package
bind9not-affectedbusterpackage
bind9not-affectedstretchpackage
bind9not-affectedjessiepackage

Примечания

  • https://kb.isc.org/docs/cve-2020-8618

  • https://gitlab.isc.org/isc-projects/bind9/-/issues/1850

EPSS

Процентиль: 79%
0.01297
Низкий

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 5 лет назад

An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.

CVSS3: 4.9
redhat
больше 5 лет назад

An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.

CVSS3: 4.9
nvd
больше 5 лет назад

An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.

CVSS3: 4.9
msrc
больше 5 лет назад

A buffer boundary check assertion in rdataset.c can fail incorrectly during zone transfer

CVSS3: 4.9
github
больше 3 лет назад

An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clients.

EPSS

Процентиль: 79%
0.01297
Низкий