Lucene search

K
ubuntuUbuntuUSN-6909-3
HistoryAug 15, 2024 - 12:00 a.m.

Bind vulnerabilities

2024-08-1500:00:00
ubuntu.com
11
ubuntu 16.04
bind
server vulnerabilities
denial of service

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.3

Confidence

Low

Releases

  • Ubuntu 16.04 ESM

Packages

  • bind9 - Internet Domain Name Server

Details

USN-6909-1 fixed vulnerabilities in Bind. This update provides
the corresponding updates for Ubuntu 16.04 LTS.

Original advisory details:

Toshifumi Sakaguchi discovered that Bind incorrectly handled having a very
large number of RRs existing at the same time. A remote attacker could
possibly use this issue to cause Bind to consume resources, leading to a
denial of service. (CVE-2024-1737)

It was discovered that Bind incorrectly handled a large number of SIG(0)
signed requests. A remote attacker could possibly use this issue to cause
Bind to consume resources, leading to a denial of service. (CVE-2024-1975)

OSVersionArchitecturePackageVersionFilename
Ubuntu16.04noarchbind9< 1:9.10.3.dfsg.P4-8ubuntu1.19+esm9UNKNOWN
Ubuntu16.04noarchbind9< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9-dbgsym< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9-doc< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9-host< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9-host-dbgsym< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9utils< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchbind9utils-dbgsym< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchdnsutils< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Ubuntu16.04noarchdnsutils-dbgsym< 1:9.10.3.dfsg.P4-8ubuntu1.19UNKNOWN
Rows per page:
1-10 of 491

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.3

Confidence

Low