Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37255
HistorySep 24, 2022 - 8:14 a.m.

Memory Leak

2022-09-2408:14:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
bind
vulnerability
memory leak
spoofed resolver
memory exhaustion

0.005 Low

EPSS

Percentile

75.2%

bind is vulnerable to memory leak. By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.