Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-0414
HistoryFeb 22, 2011 - 12:00 a.m.

CVE-2011-0414

2011-02-2200:00:00
ubuntu.com
ubuntu.com
9

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

EPSS

0.094

Percentile

94.8%

ISC BIND 9.7.1 through 9.7.2-P3, when configured as an authoritative
server, allows remote attackers to cause a denial of service (deadlock and
daemon hang) by sending a query at the time of (1) an IXFR transfer or (2)
a DDNS update.

Bugs

Notes

Author Note
mdeslaur 2975. [bug] rbtdb.c:cleanup_dead_nodes_callback() aquired the wrong lock which could lead to server deadlock. [RT #22614] 9.7.1 and later only
OSVersionArchitecturePackageVersionFilename
ubuntu10.10noarchbind9<Β 1:9.7.1.dfsg.P2-2ubuntu0.2UNKNOWN

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

EPSS

0.094

Percentile

94.8%