Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-6467

Опубликовано: 09 окт. 2019
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5
CVSS3: 7.5

Описание

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where this might occur is if the server, in addition to performing NXDOMAIN redirection for recursive clients, is also serving a local copy of the root zone or using mirroring to provide the root zone, although other configurations are also possible. Versions affected: BIND 9.12.0-> 9.12.4, 9.14.0. Also affects all releases in the 9.13 development branch.

РелизСтатусПримечание
bionic

not-affected

1:9.11.3+dfsg-1ubuntu1.5
cosmic

not-affected

1:9.11.4+dfsg-3ubuntu5.1
devel

not-affected

1:9.11.5.P1+dfsg-1ubuntu2
disco

not-affected

1:9.11.5.P1+dfsg-1ubuntu2
esm-infra-legacy/trusty

not-affected

1:9.9.5.dfsg-3ubuntu0.19
esm-infra/bionic

not-affected

1:9.11.3+dfsg-1ubuntu1.5
esm-infra/xenial

not-affected

1:9.10.3.dfsg.P4-8ubuntu1.12
precise/esm

not-affected

trusty

not-affected

1:9.9.5.dfsg-3ubuntu0.19
trusty/esm

not-affected

1:9.9.5.dfsg-3ubuntu0.19

Показывать по

Ссылки на источники

EPSS

Процентиль: 95%
0.17224
Средний

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
почти 7 лет назад

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where this might occur is if the server, in addition to performing NXDOMAIN redirection for recursive clients, is also serving a local copy of the root zone or using mirroring to provide the root zone, although other configurations are also possible. Versions affected: BIND 9.12.0-> 9.12.4, 9.14.0. Also affects all releases in the 9.13 development branch.

CVSS3: 7.5
nvd
больше 6 лет назад

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where this might occur is if the server, in addition to performing NXDOMAIN redirection for recursive clients, is also serving a local copy of the root zone or using mirroring to provide the root zone, although other configurations are also possible. Versions affected: BIND 9.12.0-> 9.12.4, 9.14.0. Also affects all releases in the 9.13 development branch.

CVSS3: 7.5
debian
больше 6 лет назад

A programming error in the nxdomain-redirect feature can cause an asse ...

github
больше 3 лет назад

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where this might occur is if the server, in addition to performing NXDOMAIN redirection for recursive clients, is also serving a local copy of the root zone or using mirroring to provide the root zone, although other configurations are also possible. Versions affected: BIND 9.12.0-> 9.12.4, 9.14.0. Also affects all releases in the 9.13 development branch.

CVSS3: 7.5
fstec
больше 6 лет назад

Уязвимость функции nxdomain-redirect DNS-сервера BIND, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 95%
0.17224
Средний

5 Medium

CVSS2

7.5 High

CVSS3