Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-2092

Опубликовано: 17 мая 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-2092: bind security, bug fix, and enhancement update (MODERATE)

[32:9.11.36-2]

  • Reduce memory used per-view on machine with few processors (#2030239)

[32:9.11.36-2]

  • Rebuilt on a new side-tag (#2013993)

[32:9.11.36-1]

  • Update to 9.11.36

[32:9.11.26-9]

  • Correct tsig system test

[32:9.11.26-8]

  • Propagate ephemeral port ranges to chroot (#1950714)

[32:9.11.26-7]

  • Do not request softhsm from bind-pkcs11, it is only in modular build (#1934035)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

bind

9.11.36-3.el8

bind-chroot

9.11.36-3.el8

bind-devel

9.11.36-3.el8

bind-export-devel

9.11.36-3.el8

bind-export-libs

9.11.36-3.el8

bind-libs

9.11.36-3.el8

bind-libs-lite

9.11.36-3.el8

bind-license

9.11.36-3.el8

bind-lite-devel

9.11.36-3.el8

bind-pkcs11

9.11.36-3.el8

bind-pkcs11-devel

9.11.36-3.el8

bind-pkcs11-libs

9.11.36-3.el8

bind-pkcs11-utils

9.11.36-3.el8

bind-sdb

9.11.36-3.el8

bind-sdb-chroot

9.11.36-3.el8

bind-utils

9.11.36-3.el8

python3-bind

9.11.36-3.el8

Oracle Linux x86_64

bind

9.11.36-3.el8

bind-chroot

9.11.36-3.el8

bind-devel

9.11.36-3.el8

bind-export-devel

9.11.36-3.el8

bind-export-libs

9.11.36-3.el8

bind-libs

9.11.36-3.el8

bind-libs-lite

9.11.36-3.el8

bind-license

9.11.36-3.el8

bind-lite-devel

9.11.36-3.el8

bind-pkcs11

9.11.36-3.el8

bind-pkcs11-devel

9.11.36-3.el8

bind-pkcs11-libs

9.11.36-3.el8

bind-pkcs11-utils

9.11.36-3.el8

bind-sdb

9.11.36-3.el8

bind-sdb-chroot

9.11.36-3.el8

bind-utils

9.11.36-3.el8

python3-bind

9.11.36-3.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 4 года назад

In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.18 of the BIND 9.17 development branch, exploitation of broken authoritative servers using a flaw in response processing can cause degradation in BIND resolver performance. The way the lame cache is currently designed makes it possible for its internal data structures to grow almost infinitely, which may cause significant delays in client query processing.

CVSS3: 5.3
redhat
почти 4 года назад

In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.18 of the BIND 9.17 development branch, exploitation of broken authoritative servers using a flaw in response processing can cause degradation in BIND resolver performance. The way the lame cache is currently designed makes it possible for its internal data structures to grow almost infinitely, which may cause significant delays in client query processing.

CVSS3: 5.3
nvd
почти 4 года назад

In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.18 of the BIND 9.17 development branch, exploitation of broken authoritative servers using a flaw in response processing can cause degradation in BIND resolver performance. The way the lame cache is currently designed makes it possible for its internal data structures to grow almost infinitely, which may cause significant delays in client query processing.

CVSS3: 5.3
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 5.3
debian
почти 4 года назад

In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> ...