Search CVE reports


Toggle filters

141 – 150 of 156 results


CVE-2009-0265

Low priority
Not affected

Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2009-0025

Medium priority
Fixed

BIND 9.6.0, 9.5.1, 9.5.0, 9.4.3, and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2008-4163

Medium priority
Not affected

Unspecified vulnerability in ISC BIND 9.3.5-P2-W1, 9.4.2-P2-W1, and 9.5.0-P2-W1 on Windows allows remote attackers to cause a denial of service (UDP client handler termination) via unknown vectors.

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2008-1447

High priority

Some fixes available 15 of 20

The DNS protocol, as implemented in (1) BIND 8 and 9 before 9.5.0-P1, 9.4.2-P1, and 9.3.5-P1; (2) Microsoft DNS in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and other implementations allow remote attackers to...

5 affected packages

bind9, dnsmasq, eglibc, glibc, python-dns

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
dnsmasq
eglibc
glibc
python-dns
Show less packages

CVE-2008-0122

Negligible priority

Some fixes available 7 of 11

Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2007-6283

Medium priority
Not affected

Red Hat Enterprise Linux 5 and Fedora install the Bind /etc/rndc.key file with world-readable permissions, which allows local users to perform unauthorized named commands, such as causing a denial of service by stopping named.

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2007-2926

Medium priority
Fixed

ISC BIND 9 through 9.5.0a5 uses a weak random number generator during generation of DNS query ids when answering resolver questions or sending NOTIFY messages to slave name servers, which makes it easier for remote attackers to...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2007-2925

Medium priority
Ignored

The default access control lists (ACL) in ISC BIND 9.4.0, 9.4.1, and 9.5.0a1 through 9.5.0a5 do not set the allow-recursion and allow-query-cache ACLs, which allows remote attackers to make recursive queries and query the cache.

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2007-2241

Medium priority
Not affected

Unspecified vulnerability in query.c in ISC BIND 9.4.0, and 9.5.0a1 through 9.5.0a3, when recursion is enabled, allows remote attackers to cause a denial of service (daemon exit) via a sequence of queries processed by...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2007-0494

Medium priority
Fixed

ISC BIND 9.0.x, 9.1.x, 9.2.0 up to 9.2.7, 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (exit) via a type * (ANY) DNS...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages