[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-0414Date: (C)2011-02-23   (M)2023-12-22


ISC BIND 9.7.1 through 9.7.2-P3, when configured as an authoritative server, allows remote attackers to cause a denial of service (deadlock and daemon hang) by sending a query at the time of (1) an IXFR transfer or (2) a DDNS update.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.1
Exploit Score: 8.6
Impact Score: 6.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: NONE
Integrity: NONE
Availability: COMPLETE
  
Reference:
SECTRACK-1025110
SECUNIA-43439
SECUNIA-43443
ADV-2011-0466
ADV-2011-0489
DSA-2208
SUSE-SR:2011:005
USN-1070-1
VU#449980
VU#559980
http://www.isc.org/software/bind/advisories/cve-2011-0414
https://bugzilla.redhat.com/show_bug.cgi?id=679496

CPE    9
cpe:/a:isc:bind:9.7.1:p2
cpe:/a:isc:bind:9.7.1:p1
cpe:/a:isc:bind:9.7.2:rc1
cpe:/a:isc:bind:9.7.2:p2
...
CWE    1
CWE-399
OVAL    3
oval:org.secpod.oval:def:700239
oval:org.secpod.oval:def:600225
oval:org.secpod.oval:def:600562

© SecPod Technologies