ISC BIND是美国ISC公司的一套实现了DNS协议的开源软件。 ISC BIND中存在竞争条件问题漏洞。该漏洞源于网络系统或产品在运行过程中,并发代码需要互斥地访问共享资源时,对于并发访问的处理不当。以下产品及版本受到影响:BIND 9.11.0版本至9.11.7,9.12.0版本至9.12.4-P1版本,9.14.0版本至9.14.2版本,BIND 9.13版本(development branch),BIND 9.15(development branch),BIND Supported Prev
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-6469 | BIND Supported Preview Edition can exit with an assertion failure if ECS is in use | |
| CVE-2018-5732 | A specially constructed response from a malicious server can cause a buffer overflow in dh | |
| CVE-2018-5743 | Limiting simultaneous TCP clients was ineffective | |
| CVE-2018-5744 | A specially crafted packet can cause named to leak memory | |
| CVE-2018-5745 | An assertion failure can occur if a trust anchor rolls over to an unsupported key algorith | |
| CVE-2019-6465 | Zone transfer controls for writable DLZ zones were not effective | |
| CVE-2019-6467 | An error in the nxdomain redirect feature can cause BIND to exit with an INSIST assertion | |
| CVE-2019-6468 | BIND Supported Preview Edition can exit with an assertion failure if nxdomain-redirect is |
No comments yet