Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 23

Количество 23

fstec логотип

BDU:2025-01459

больше 1 года назад

Уязвимость сервера DNS BIND, связанная с асимметричным потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Средний
redos логотип

ROS-20250716-01

около 1 года назад

Уязвимость bind-dyndb-ldap

CVSS3: 7.5
EPSS: Средний
ubuntu логотип

CVE-2024-11187

больше 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2024-11187

больше 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2024-11187

больше 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Средний
msrc логотип

CVE-2024-11187

около 1 года назад

Many records in the additional section cause CPU exhaustion

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2024-11187

больше 1 года назад

It is possible to construct a zone such that some queries to it will g ...

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2025:0427-1

больше 1 года назад

Security update for bind

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2025:0389-1

больше 1 года назад

Security update for bind

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2025:0384-1

больше 1 года назад

Security update for bind

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2025:0359-1

больше 1 года назад

Security update for bind

EPSS: Средний
rocky логотип

RLSA-2025:1681

больше 1 года назад

Important: bind security update

EPSS: Средний
rocky логотип

RLSA-2025:1676

больше 1 года назад

Important: bind9.16 security update

EPSS: Средний
rocky логотип

RLSA-2025:1675

больше 1 года назад

Important: bind security update

EPSS: Средний
github логотип

GHSA-w8w2-83mf-6cp5

больше 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Средний
oracle-oval логотип

ELSA-2025-1718

больше 1 года назад

ELSA-2025-1718: bind security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1681

больше 1 года назад

ELSA-2025-1681: bind security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1676

больше 1 года назад

ELSA-2025-1676: bind9.16 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1675

больше 1 года назад

ELSA-2025-1675: bind security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0355-1

больше 1 года назад

Security update for bind

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-01459

Уязвимость сервера DNS BIND, связанная с асимметричным потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
14%
Средний
больше 1 года назад
redos логотип
ROS-20250716-01

Уязвимость bind-dyndb-ldap

CVSS3: 7.5
14%
Средний
около 1 года назад
ubuntu логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
14%
Средний
больше 1 года назад
redhat логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
14%
Средний
больше 1 года назад
nvd логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
14%
Средний
больше 1 года назад
msrc логотип
CVE-2024-11187

Many records in the additional section cause CPU exhaustion

CVSS3: 7.5
14%
Средний
около 1 года назад
debian логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will g ...

CVSS3: 7.5
14%
Средний
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0427-1

Security update for bind

14%
Средний
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0389-1

Security update for bind

14%
Средний
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0384-1

Security update for bind

14%
Средний
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0359-1

Security update for bind

14%
Средний
больше 1 года назад
rocky логотип
RLSA-2025:1681

Important: bind security update

14%
Средний
больше 1 года назад
rocky логотип
RLSA-2025:1676

Important: bind9.16 security update

14%
Средний
больше 1 года назад
rocky логотип
RLSA-2025:1675

Important: bind security update

14%
Средний
больше 1 года назад
github логотип
GHSA-w8w2-83mf-6cp5

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
14%
Средний
больше 1 года назад
oracle-oval логотип
ELSA-2025-1718

ELSA-2025-1718: bind security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2025-1681

ELSA-2025-1681: bind security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2025-1676

ELSA-2025-1676: bind9.16 security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2025-1675

ELSA-2025-1675: bind security update (IMPORTANT)

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0355-1

Security update for bind

больше 1 года назад

Уязвимостей на страницу