PT-2020-5767 · Isc+7 · Bind 9+7

Joop Boonen

·

Published

2020-08-20

·

Updated

2024-06-15

·

CVE-2020-8624

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: Bind9 versions 9.9.12 through 9.9.13 Bind9 versions 9.10.7 through 9.10.8 Bind9 versions 9.11.3 through 9.11.21 Bind9 versions 9.12.1 through 9.16.5 Bind9 versions 9.17.0 through 9.17.3 Bind9 Supported Preview Edition versions 9.9.12-S1 through 9.9.13-S1 Bind9 Supported Preview Edition versions 9.11.3-S1 through 9.11.21-S1
Description: The issue is related to errors in processing 'update-policy' rules of type 'subdomain' in the Bind9 DNS server package. An attacker, acting remotely, can exploit this to update all parts of a DNS zone, including the subdomain that is scheduled for update. This can occur when an attacker has been granted privileges to change a specific subset of the zone's content, allowing them to abuse these unintended additional privileges to update other contents of the zone.
Recommendations: For Bind9 versions 9.9.12 through 9.9.13, update to a version outside of this range to mitigate the risk. For Bind9 versions 9.10.7 through 9.10.8, update to a version outside of this range to mitigate the risk. For Bind9 versions 9.11.3 through 9.11.21, update to a version outside of this range to mitigate the risk. For Bind9 versions 9.12.1 through 9.16.5, update to a version outside of this range to mitigate the risk. For Bind9 versions 9.17.0 through 9.17.3, update to a version outside of this range to mitigate the risk. For Bind9 Supported Preview Edition versions 9.9.12-S1 through 9.9.13-S1, update to a version outside of this range to mitigate the risk. For Bind9 Supported Preview Edition versions 9.11.3-S1 through 9.11.21-S1, update to a version outside of this range to mitigate the risk. As a temporary workaround, consider restricting access to the update-policy rules of type 'subdomain' until a patch is available.

Exploit

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2651
ALT-PU-2020-2685
BDU:2021-01726
CESA-2020_4500
CESA-2020_5011
CVE-2020-8624
DSA-4752-1
MGASA-2021-0036
OPENSUSE-SU-2020:1699-1
OPENSUSE-SU-2020:1701-1
OPENSUSE-SU-2020_1699-1
OPENSUSE-SU-2020_1701-1
OPENSUSE-SU-2024:10650-1
RHSA-2020:4500
RHSA-2020:5011
RHSA-2020:5203
RHSA-2020_4500
RHSA-2020_5011
SUSE-RU-2020:2915-1
SUSE-SU-2020:2914-1
USN-4468-1

Affected Products

Alt Linux
Bind Server
Bind 9
Centos
Linuxmint
Red Hat
Suse
Ubuntu