← Back

CVE-2017-3136

nvd nist
Published: Jan 16, 2019Modified: Nov 21, 2024

JSON object

Loading...
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

A query with a specific set of characteristics could cause a server using DNS64 to encounter an assertion failure and terminate. An attacker could deliberately construct a query, enabling denial-of-service against a server if it was configured to use the DNS64 feature and other preconditions were met. Affects BIND 9.8.0 -> 9.8.8-P1, 9.9.0 -> 9.9.9-P6, 9.9.10b1->9.9.10rc1, 9.10.0 -> 9.10.4-P6, 9.10.5b1->9.10.5rc1, 9.11.0 -> 9.11.0-P3, 9.11.1b1->9.11.1rc1, 9.9.3-S1 -> 9.9.9-S8.

Affected (47)

Show all products
1 product
Bind
6 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Eus
Enterprise Linux Server Tus
Enterprise Linux Workstation
3 products
Data Ontap Edge
Element Software
Oncommand Balance
1 product
Debian Linux
Configuration A
28 vulnerable
Vulnerable SoftwareAffected Versions
Isc
From 9.10.0 to 9.10.4
From 9.8.0 to 9.8.8
From 9.9.0 to 9.9.9
Version 9.10.4 p1
Version 9.10.4 p2
Version 9.10.4 p3
Version 9.10.4 p4
Version 9.10.4 p5
Version 9.10.4 p6
Version 9.10.5 b1
Version 9.10.5 rc1
Version 9.11.0
Version 9.11.0 p1
Version 9.11.0 p2
Version 9.11.0 p3
Version 9.11.1 beta1
Version 9.11.1 rc1
Version 9.8.0 p1
Version 9.9.0 p1
Version 9.9.0 p2
Version 9.9.0 p3
Version 9.9.0 p4
Version 9.9.0 p5
Version 9.9.0 p6
Version 9.9.10 beta1
Version 9.9.10 rc1
Version 9.9.3
Version 9.9.3 s1
Configuration B
15 vulnerable
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0

References (22)

Source: security-officer@isc.org
Third Party AdvisoryVDB Entry
Source: security-officer@isc.org
Third Party AdvisoryVDB Entry
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Vendor Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.