PT-2024-2766 · Isc+10 · Bind 9+10

Published

2024-01-10

·

Updated

2024-10-22

·

CVE-2023-5517

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions BIND 9 versions 9.12.0 through 9.16.45 BIND 9 versions 9.18.0 through 9.18.21 BIND 9 versions 9.19.0 through 9.19.19 BIND 9 versions 9.16.8-S1 through 9.16.45-S1 BIND 9 versions 9.18.11-S1 through 9.18.21-S1
Description A flaw in query-handling code can cause named to exit prematurely with an assertion failure when nxdomain-redirect <domain>; is configured and the resolver receives a PTR query for an RFC 1918 address that would normally result in an authoritative NXDOMAIN response. This issue can be exploited by a remote attacker to trigger an assertion failure, resulting in a denial of service.
Recommendations For BIND 9 versions 9.12.0 through 9.16.45, update to a version outside of this range to resolve the issue. For BIND 9 versions 9.18.0 through 9.18.21, update to a version outside of this range to resolve the issue. For BIND 9 versions 9.19.0 through 9.19.19, update to a version outside of this range to resolve the issue. For BIND 9 versions 9.16.8-S1 through 9.16.45-S1, update to a version outside of this range to resolve the issue. For BIND 9 versions 9.18.11-S1 through 9.18.21-S1, update to a version outside of this range to resolve the issue. As a temporary workaround, consider disabling the nxdomain-redirect feature until a patch is available.

Exploit

Fix

DoS

Assertion Failure

Weakness Enumeration

Related Identifiers

ALSA-2024:1781
ALSA-2024:1789
ALSA-2024:2551
AZL-34354
AZL-34563
BDU:2024-02902
CESA-2024_1781
CVE-2023-5517
DSA-5621-1
INFSA-2024_2551
MGASA-2024-0038
OESA-2024-1323
OESA-2024-1324
OESA-2024-1325
OESA-2024-1326
OPENSUSE-SU-2024:13687-1
OPENSUSE-SU-2024_0574-1
OPENSUSE-SU-2024_0590-1
OPENSUSE-SU-2024_1982-1
RHSA-2024:1647
RHSA-2024:1648
RHSA-2024:1781
RHSA-2024:1789
RHSA-2024:1800
RHSA-2024:1803
RHSA-2024:2551
RHSA-2024_1781
RHSA-2024_1789
RHSA-2024_2551
RLSA-2024:1781
RLSA-2024:2551
SUSE-SU-2024:0574-1
SUSE-SU-2024:0590-1
SUSE-SU-2024:1982-1
SUSE-SU-2024:2033-1
USN-6633-1
USN-6642-1

Affected Products

Almalinux
Bind 9
Bind Server
Centos
Ibm Aix
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu