Lucene search

K
oraclelinuxOracleLinuxELSA-2024-5524
HistoryAug 19, 2024 - 12:00 a.m.

bind security update

2024-08-1900:00:00
linux.oracle.com
34
bind security
ci rebuild
cve-2024-1975
cve-2024-1737
runtime limit change
incompatible dhcp
incompatible bind-dyndb-ldap

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7

Confidence

Low

[32:9.11.36-16.2]

  • Rebuild after CI change
    [32:9.11.36-16.1]
  • Resolve CVE-2024-1975
  • Resolve CVE-2024-1737
  • Add ability to change runtime limits for max types and records per name
    [32:9.11.36-16]
  • Ensure incompatible dhcp is not accepted
    [32:9.11.36-15]
  • Ensure incompatible bind-dyndb-ldap is not accepted

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7

Confidence

Low