Количество 21
Количество 21

CVE-2023-2828
Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and...

CVE-2023-2828
Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and...

CVE-2023-2828
Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and 9

CVE-2023-2828
CVE-2023-2828
Every `named` instance configured to run as a recursive resolver maint ...

SUSE-SU-2023:2954-1
Security update for bind

SUSE-SU-2023:2794-1
Security update for bind

SUSE-SU-2023:2793-1
Security update for bind

SUSE-SU-2023:2789-1
Security update for bind

RLSA-2023:4102
Important: bind security update

RLSA-2023:4100
Important: bind9.16 security update

RLSA-2023:4099
Important: bind security update
GHSA-v668-ccv8-m5gx
Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, an...
ELSA-2023-4152
ELSA-2023-4152: bind security update (IMPORTANT)
ELSA-2023-4102
ELSA-2023-4102: bind security update (IMPORTANT)
ELSA-2023-4100
ELSA-2023-4100: bind9.16 security update (IMPORTANT)
ELSA-2023-4099
ELSA-2023-4099: bind security update (IMPORTANT)

BDU:2023-07642
Уязвимость сервера DNS BIND, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании

SUSE-SU-2023:2836-1
Security update for bind

SUSE-SU-2023:2667-1
Security update for bind
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-2828 Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and... | CVSS3: 7.5 | 0% Низкий | около 2 лет назад |
![]() | CVE-2023-2828 Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and... | CVSS3: 7.5 | 0% Низкий | около 2 лет назад |
![]() | CVE-2023-2828 Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, and 9 | CVSS3: 7.5 | 0% Низкий | около 2 лет назад |
![]() | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
CVE-2023-2828 Every `named` instance configured to run as a recursive resolver maint ... | CVSS3: 7.5 | 0% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:2954-1 Security update for bind | 0% Низкий | почти 2 года назад | |
![]() | SUSE-SU-2023:2794-1 Security update for bind | 0% Низкий | почти 2 года назад | |
![]() | SUSE-SU-2023:2793-1 Security update for bind | 0% Низкий | почти 2 года назад | |
![]() | SUSE-SU-2023:2789-1 Security update for bind | 0% Низкий | почти 2 года назад | |
![]() | RLSA-2023:4102 Important: bind security update | 0% Низкий | почти 2 года назад | |
![]() | RLSA-2023:4100 Important: bind9.16 security update | 0% Низкий | почти 2 года назад | |
![]() | RLSA-2023:4099 Important: bind security update | 0% Низкий | почти 2 года назад | |
GHSA-v668-ccv8-m5gx Every `named` instance configured to run as a recursive resolver maintains a cache database holding the responses to the queries it has recently sent to authoritative servers. The size limit for that cache database can be configured using the `max-cache-size` statement in the configuration file; it defaults to 90% of the total amount of memory available on the host. When the size of the cache reaches 7/8 of the configured limit, a cache-cleaning algorithm starts to remove expired and/or least-recently used RRsets from the cache, to keep memory use below the configured limit. It has been discovered that the effectiveness of the cache-cleaning algorithm used in `named` can be severely diminished by querying the resolver for specific RRsets in a certain order, effectively allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.11.0 through 9.16.41, 9.18.0 through 9.18.15, 9.19.0 through 9.19.13, 9.11.3-S1 through 9.16.41-S1, an... | CVSS3: 7.5 | 0% Низкий | около 2 лет назад | |
ELSA-2023-4152 ELSA-2023-4152: bind security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-4102 ELSA-2023-4102: bind security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-4100 ELSA-2023-4100: bind9.16 security update (IMPORTANT) | почти 2 года назад | |||
ELSA-2023-4099 ELSA-2023-4099: bind security update (IMPORTANT) | почти 2 года назад | |||
![]() | BDU:2023-07642 Уязвимость сервера DNS BIND, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | около 2 лет назад |
![]() | SUSE-SU-2023:2836-1 Security update for bind | почти 2 года назад | ||
![]() | SUSE-SU-2023:2667-1 Security update for bind | почти 2 года назад |
Уязвимостей на страницу