Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2906

Опубликовано: 21 сент. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*
Версия от 9.18.0 (включая) до 9.18.7 (исключая)
cpe:2.3:a:isc:bind:*:*:*:*:-:*:*:*
Версия от 9.19.0 (включая) до 9.19.5 (исключая)

EPSS

Процентиль: 47%
0.00239
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 3 года назад

An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.

CVSS3: 7.5
redhat
почти 3 года назад

An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.

CVSS3: 7.5
debian
почти 3 года назад

An attacker can leverage this flaw to gradually erode available memory ...

CVSS3: 7.5
github
почти 3 года назад

An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.

CVSS3: 7.5
fstec
почти 3 года назад

Уязвимость реализации алгоритма Диффи-Хеллмана сервера DNS BIND, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 47%
0.00239
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401