Логотип exploitDog
bind:CVE-2024-11187
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-11187

Количество 23

Количество 23

ubuntu логотип

CVE-2024-11187

около 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2024-11187

около 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-11187

около 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2024-11187

7 месяцев назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-11187

около 1 года назад

It is possible to construct a zone such that some queries to it will g ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0427-1

12 месяцев назад

Security update for bind

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0389-1

12 месяцев назад

Security update for bind

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0384-1

около 1 года назад

Security update for bind

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0359-1

около 1 года назад

Security update for bind

EPSS: Низкий
rocky логотип

RLSA-2025:1681

11 месяцев назад

Important: bind security update

EPSS: Низкий
rocky логотип

RLSA-2025:1676

12 месяцев назад

Important: bind9.16 security update

EPSS: Низкий
rocky логотип

RLSA-2025:1675

12 месяцев назад

Important: bind security update

EPSS: Низкий
github логотип

GHSA-w8w2-83mf-6cp5

около 1 года назад

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2025-1718

11 месяцев назад

ELSA-2025-1718: bind security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1681

12 месяцев назад

ELSA-2025-1681: bind security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1676

12 месяцев назад

ELSA-2025-1676: bind9.16 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1675

12 месяцев назад

ELSA-2025-1675: bind security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2025-01459

около 1 года назад

Уязвимость сервера DNS BIND, связанная с асимметричным потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0355-1

около 1 года назад

Security update for bind

EPSS: Низкий
redos логотип

ROS-20250716-01

7 месяцев назад

Уязвимость bind-dyndb-ldap

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
1%
Низкий
около 1 года назад
redhat логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
1%
Низкий
около 1 года назад
nvd логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
1%
Низкий
около 1 года назад
msrc логотип
CVSS3: 7.5
1%
Низкий
7 месяцев назад
debian логотип
CVE-2024-11187

It is possible to construct a zone such that some queries to it will g ...

CVSS3: 7.5
1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0427-1

Security update for bind

1%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0389-1

Security update for bind

1%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0384-1

Security update for bind

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0359-1

Security update for bind

1%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:1681

Important: bind security update

1%
Низкий
11 месяцев назад
rocky логотип
RLSA-2025:1676

Important: bind9.16 security update

1%
Низкий
12 месяцев назад
rocky логотип
RLSA-2025:1675

Important: bind security update

1%
Низкий
12 месяцев назад
github логотип
GHSA-w8w2-83mf-6cp5

It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to attack this exposure. This issue affects BIND 9 versions 9.11.0 through 9.11.37, 9.16.0 through 9.16.50, 9.18.0 through 9.18.32, 9.20.0 through 9.20.4, 9.21.0 through 9.21.3, 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.50-S1, and 9.18.11-S1 through 9.18.32-S1.

CVSS3: 7.5
1%
Низкий
около 1 года назад
oracle-oval логотип
ELSA-2025-1718

ELSA-2025-1718: bind security update (IMPORTANT)

11 месяцев назад
oracle-oval логотип
ELSA-2025-1681

ELSA-2025-1681: bind security update (IMPORTANT)

12 месяцев назад
oracle-oval логотип
ELSA-2025-1676

ELSA-2025-1676: bind9.16 security update (IMPORTANT)

12 месяцев назад
oracle-oval логотип
ELSA-2025-1675

ELSA-2025-1675: bind security update (IMPORTANT)

12 месяцев назад
fstec логотип
BDU:2025-01459

Уязвимость сервера DNS BIND, связанная с асимметричным потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0355-1

Security update for bind

около 1 года назад
redos логотип
ROS-20250716-01

Уязвимость bind-dyndb-ldap

CVSS3: 7.5
1%
Низкий
7 месяцев назад

Уязвимостей на страницу