Lucene search

K
freebsdFreeBSD7A282E49-95B6-11E2-8433-0800273FE665
HistoryMar 11, 2013 - 12:00 a.m.

dns/bind9* -- Malicious Regex Can Cause Memory Exhaustion

2013-03-1100:00:00
vuxml.freebsd.org
19

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.943

Percentile

99.2%

ISC reports:

A critical defect in BIND 9 allows an attacker to cause
excessive memory consumption in named or other programs
linked to libdns.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchbind99<Β 9.9.2.2UNKNOWN
FreeBSDanynoarchbind99-base<Β 9.9.2.2UNKNOWN
FreeBSDanynoarchbind98<Β 9.8.4.2UNKNOWN
FreeBSDanynoarchbind98-base<Β 9.8.4.2UNKNOWN

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.943

Percentile

99.2%