Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qrrf-rhq5-mvxv

Опубликовано: 16 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A BIND recursive resolver may experience excessive resource consumption if it encounters large numbers of a particular kind of invalid DNSSEC record. Default limits on "max-records-per-type" and "max-types-per-name" help mitigate the exposure. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.27-S1.

A BIND recursive resolver may experience excessive resource consumption if it encounters large numbers of a particular kind of invalid DNSSEC record. Default limits on "max-records-per-type" and "max-types-per-name" help mitigate the exposure. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.27-S1.

EPSS

Процентиль: 34%
0.00404
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-407

Связанные уязвимости

CVSS3: 5.3
ubuntu
4 дня назад

(A BIND recursive resolver may experience excessive resource consumptio ...)

CVSS3: 5.3
redhat
5 дней назад

A BIND recursive resolver may experience excessive resource consumption if it encounters large numbers of a particular kind of invalid DNSSEC record. Default limits on "max-records-per-type" and "max-types-per-name" help mitigate the exposure. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.27-S1.

CVSS3: 5.3
nvd
4 дня назад

A BIND recursive resolver may experience excessive resource consumption if it encounters large numbers of a particular kind of invalid DNSSEC record. Default limits on "max-records-per-type" and "max-types-per-name" help mitigate the exposure. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.27-S1.

CVSS3: 5.3
debian
4 дня назад

A BIND recursive resolver may experience excessive resource consumptio ...

EPSS

Процентиль: 34%
0.00404
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-407