Search CVE reports


Toggle filters

61 – 70 of 156 results


CVE-2019-6471

Medium priority
Fixed

A race condition which may occur when discarding malformed packets can result in BIND exiting due to a REQUIRE assertion failure in dispatch.c. Versions affected: BIND 9.11.0 -> 9.11.7, 9.12.0 -> 9.12.4-P1, 9.14.0 -> 9.14.2. Also...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed
Show less packages

CVE-2019-6468

Medium priority
Not affected

In BIND Supported Preview Edition, an error in the nxdomain-redirect feature can occur in versions which support EDNS Client Subnet (ECS) features. In those versions which have ECS support, enabling nxdomain-redirect is likely to...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Not affected
Show less packages

CVE-2019-6467

Medium priority
Not affected

A programming error in the nxdomain-redirect feature can cause an assertion failure in query.c if the alternate namespace used by nxdomain-redirect is a descendant of a zone that is served locally. The most likely scenario where...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Not affected
Show less packages

CVE-2018-5743

Medium priority
Fixed

By design, BIND is intended to limit the number of TCP clients that can be connected at any given time. The number of allowed connections is a tunable parameter which, if unset, defaults to a conservative value for most servers....

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed
Show less packages

CVE-2017-3139

Medium priority
Not affected

A denial of service flaw was found in the way BIND handled DNSSEC validation. A remote attacker could use this flaw to make named exit unexpectedly with an assertion failure via a specially crafted DNS response.

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9
Show less packages

CVE-2019-6465

Medium priority
Fixed

Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if the zones are writable Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P2, 9.12.0 -> 9.12.3-P2, and versions 9.9.3-S1 ->...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed
Show less packages

CVE-2018-5745

Medium priority
Fixed

"managed-keys" is a feature which allows a BIND resolver to automatically maintain the keys used by trust anchors which operators configure for use in DNSSEC validation. Due to an error in the managed-keys feature it is possible...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed
Show less packages

CVE-2018-5744

Medium priority
Fixed

A failure to free memory can occur when processing messages having a specific combination of EDNS options. Versions affected are: BIND 9.10.7 -> 9.10.8-P1, 9.11.3 -> 9.11.5-P1, 9.12.0 -> 9.12.3-P1, and versions 9.10.7-S1 ->...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Fixed
Show less packages

CVE-2018-5741

Negligible priority

Some fixes available 1 of 5

To provide fine-grained controls over the ability to use Dynamic DNS (DDNS) to update records in a zone, BIND 9 provides a feature called update-policy. Various rules can be configured to limit the types of updates that can be...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Ignored
Show less packages

CVE-2018-5737

Medium priority
Not affected

A problem with the implementation of the new serve-stale feature in BIND 9.12 can lead to an assertion failure in rbtdb.c, even when stale-answer-enable is off. Additionally, problematic interaction between the serve-stale feature...

1 affected package

bind9

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bind9 Not affected
Show less packages