ISC BIND是美国ISC公司的一套实现了DNS协议的开源软件。 ISC BIND Supported Preview Edition版本中的EDNS Client Subnet功能存在安全漏洞。攻击者可利用该漏洞造成拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ISC | BIND 9 Supported Preview Edition | BIND 9.10.5-S1 -> 9.11.6-S1 of BIND 9 Supported Preview Edition. | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-6471 | A race condition when discarding malformed packets can cause BIND to exit with an assertio | |
| CVE-2018-5732 | A specially constructed response from a malicious server can cause a buffer overflow in dh | |
| CVE-2018-5743 | Limiting simultaneous TCP clients was ineffective | |
| CVE-2018-5744 | A specially crafted packet can cause named to leak memory | |
| CVE-2018-5745 | An assertion failure can occur if a trust anchor rolls over to an unsupported key algorith | |
| CVE-2019-6465 | Zone transfer controls for writable DLZ zones were not effective | |
| CVE-2019-6467 | An error in the nxdomain redirect feature can cause BIND to exit with an INSIST assertion | |
| CVE-2019-6468 | BIND Supported Preview Edition can exit with an assertion failure if nxdomain-redirect is |
No comments yet