PT-2020-5739 · Isc+7 · Bind+7

Lyu Chiy

·

Published

2020-08-20

·

Updated

2024-06-15

·

CVE-2020-8623

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: BIND versions 9.10.0 through 9.11.21 BIND versions 9.12.0 through 9.16.5 BIND versions 9.17.0 through 9.17.3 BIND 9 Supported Preview Edition versions 9.10.5-S1 through 9.11.21-S1
Description: The issue allows an attacker to trigger a crash with a specially crafted query packet. To be vulnerable, the system must be running BIND built with "--enable-native-pkcs11", signing one or more zones with an RSA key, and be able to receive queries from a possible attacker. The vulnerability is related to the implementation of the DNS server build with the "--enable-native-pkcs11" option and is associated with a lack of privilege management mechanism. Exploitation can allow a remote attacker to cause a denial of service by sending specially formed DNS zone queries signed with an RSA key.
Recommendations: For BIND versions 9.10.0 through 9.11.21, consider disabling the native PKCS#11 support until a patch is available. For BIND versions 9.12.0 through 9.16.5, restrict access to zones signed with RSA keys to minimize the risk of exploitation. For BIND versions 9.17.0 through 9.17.3, avoid using the "--enable-native-pkcs11" option when building BIND until a fix is released. For BIND 9 Supported Preview Edition versions 9.10.5-S1 through 9.11.21-S1, apply the same recommendations as for the corresponding BIND versions.

Exploit

Fix

Assertion Failure

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2651
ALT-PU-2020-2685
BDU:2021-01693
CESA-2020_4500
CESA-2020_5011
CVE-2020-8623
DLA-2355-1
DSA-4752-1
OPENSUSE-SU-2020:1699-1
OPENSUSE-SU-2020:1701-1
OPENSUSE-SU-2020_1699-1
OPENSUSE-SU-2020_1701-1
OPENSUSE-SU-2024:10650-1
RHSA-2020:4500
RHSA-2020:4992
RHSA-2020:5011
RHSA-2020:5203
RHSA-2020_4500
RHSA-2020_5011
SUSE-RU-2020:2915-1
SUSE-SU-2020:2914-1
USN-4468-1

Affected Products

Alt Linux
Bind
Bind Server
Centos
Linuxmint
Red Hat
Suse
Ubuntu