Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-9213

Опубликовано: 01 мая 2021
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2021-9213: bind security update (IMPORTANT)

[32:9.8.2-0.68.rc1.0.2.8]

  • Backport possible assertion failure on DNAME processing (CVE-2021-25215)

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

bind

9.8.2-0.68.rc1.0.2.el6_10.8

bind-chroot

9.8.2-0.68.rc1.0.2.el6_10.8

bind-devel

9.8.2-0.68.rc1.0.2.el6_10.8

bind-libs

9.8.2-0.68.rc1.0.2.el6_10.8

bind-sdb

9.8.2-0.68.rc1.0.2.el6_10.8

bind-utils

9.8.2-0.68.rc1.0.2.el6_10.8

Oracle Linux i686

bind

9.8.2-0.68.rc1.0.2.el6_10.8

bind-chroot

9.8.2-0.68.rc1.0.2.el6_10.8

bind-devel

9.8.2-0.68.rc1.0.2.el6_10.8

bind-libs

9.8.2-0.68.rc1.0.2.el6_10.8

bind-sdb

9.8.2-0.68.rc1.0.2.el6_10.8

bind-utils

9.8.2-0.68.rc1.0.2.el6_10.8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a query for a record triggering the flaw described above, the named process will terminate due to a failed assertion check. The vulnerability affects all currently maintained BIND 9 branches (9.11, 9.11-S, 9.16, 9.16-S, 9.17) as well as all other versions of BIND 9.

CVSS3: 7.5
redhat
около 4 лет назад

In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a query for a record triggering the flaw described above, the named process will terminate due to a failed assertion check. The vulnerability affects all currently maintained BIND 9 branches (9.11, 9.11-S, 9.16, 9.16-S, 9.17) as well as all other versions of BIND 9.

CVSS3: 7.5
nvd
около 4 лет назад

In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a query for a record triggering the flaw described above, the named process will terminate due to a failed assertion check. The vulnerability affects all currently maintained BIND 9 branches (9.11, 9.11-S, 9.16, 9.16-S, 9.17) as well as all other versions of BIND 9.

CVSS3: 7.5
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.5
debian
около 4 лет назад

In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S ...