← Back

CVE-2022-38177

nvd nist
Published: Sep 21, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.

Affected (34)

Products: Isc: Bind · Debian: Debian Linux · Fedoraproject: Fedora · +1 more
Show all products
1 product
Bind
1 product
Debian Linux
1 product
Fedora
1 product
Active Iq Unified Manager
Configuration A
28 vulnerable
Vulnerable SoftwareAffected Versions
Isc
From 9.8.4 to 9.16.32
Version 9.10.5 s1
Version 9.10.7 s1
Version 9.11.12 s1
Version 9.11.14-s1
Version 9.11.19-s1
Version 9.11.21 s1
Version 9.11.27 s1
Version 9.11.29 s1
Version 9.11.35 s1
Version 9.11.37 s1
Version 9.11.3 s1
Version 9.11.5 s3
Version 9.11.5 s3
Version 9.11.5 s5
Version 9.11.5 s6
Version 9.11.6 s1
Version 9.11.7 s1
Version 9.11.8 s1
Version 9.16.11 s1
Version 9.16.13 s1
Version 9.16.21 s1
Version 9.16.32 s1
Version 9.16.8 s1
Version 9.9.12 s1
Version 9.9.13 s1
Version 9.9.3 s1
Version 9.9.3 s1
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 11.0
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 35
Version 36
Version 37
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

References (18)

Source: security-officer@isc.org
Mailing ListPatchThird Party Advisory
Source: security-officer@isc.org
PatchThird Party Advisory
Source: security-officer@isc.org
Mailing ListThird Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: security-officer@isc.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.