Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-25214

Опубликовано: 29 апр. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 4
CVSS3: 6.5

Описание

In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a malformed IXFR triggering the flaw described above, the named process will terminate due to a failed assertion the next time the transferred secondary zone is refreshed.

РелизСтатусПримечание
bionic

released

1:9.11.3+dfsg-1ubuntu1.15
devel

released

1:9.16.8-1ubuntu3.1
esm-infra-legacy/trusty

released

1:9.9.5.dfsg-3ubuntu0.19+esm13
esm-infra/bionic

released

1:9.11.3+dfsg-1ubuntu1.15
esm-infra/focal

released

1:9.16.1-0ubuntu2.8
esm-infra/xenial

released

1:9.10.3.dfsg.P4-8ubuntu1.19
focal

released

1:9.16.1-0ubuntu2.8
groovy

released

1:9.16.6-3ubuntu1.2
hirsute

released

1:9.16.8-1ubuntu3.1
impish

released

1:9.16.8-1ubuntu3.1

Показывать по

4 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 4 лет назад

In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a malformed IXFR triggering the flaw described above, the named process will terminate due to a failed assertion the next time the transferred secondary zone is refreshed.

CVSS3: 6.5
nvd
больше 4 лет назад

In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a malformed IXFR triggering the flaw described above, the named process will terminate due to a failed assertion the next time the transferred secondary zone is refreshed.

CVSS3: 6.5
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 6.5
debian
больше 4 лет назад

In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versi ...

rocky
около 4 лет назад

Moderate: bind security and bug fix update

4 Medium

CVSS2

6.5 Medium

CVSS3