In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIND 9 Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.11 of the BIND 9.17 development branch, when a vulnerable version of named receives a malformed IXFR triggering the flaw described above, the named process will terminate due to a failed assertion the next time the transferred secondary zone is refreshed.
2021-04-29T01:15:07.977
2024-11-21T05:54:33.470
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:N/A:P
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | isc | bind | ≤ 9.8.8 | Yes |
| Application | isc | bind | < 9.11.31 | Yes |
| Application | isc | bind | < 9.16.15 | Yes |
| Application | isc | bind | < 9.17.12 | Yes |
| Application | isc | bind | 9.9.3 | Yes |
| Application | isc | bind | 9.9.12 | Yes |
| Application | isc | bind | 9.9.13 | Yes |
| Application | isc | bind | 9.10.5 | Yes |
| Application | isc | bind | 9.10.7 | Yes |
| Application | isc | bind | 9.11.3 | Yes |
| Application | isc | bind | 9.11.5 | Yes |
| Application | isc | bind | 9.11.5 | Yes |
| Application | isc | bind | 9.11.5 | Yes |
| Application | isc | bind | 9.11.6 | Yes |
| Application | isc | bind | 9.11.7 | Yes |
| Application | isc | bind | 9.11.8 | Yes |
| Application | isc | bind | 9.11.12 | Yes |
| Application | isc | bind | 9.11.21 | Yes |
| Application | isc | bind | 9.11.27 | Yes |
| Application | isc | bind | 9.11.29 | Yes |
| Application | isc | bind | 9.16.8 | Yes |
| Application | isc | bind | 9.16.11 | Yes |
| Application | isc | bind | 9.16.13 | Yes |
| Operating System | debian | debian_linux | 9.0 | Yes |
| Operating System | debian | debian_linux | 10.0 | Yes |
| Operating System | fedoraproject | fedora | 33 | Yes |
| Operating System | fedoraproject | fedora | 34 | Yes |
| Application | siemens | sinec_infrastructure_network_services | < 1.0.1.1 | Yes |
| Application | netapp | active_iq_unified_manager | - | Yes |
| Application | netapp | cloud_backup | - | Yes |
| Operating System | netapp | aff_a250_firmware | - | Yes |
| Hardware | netapp | aff_a250 | - | No |
| Operating System | netapp | aff_500f_firmware | - | Yes |
| Hardware | netapp | aff_500f | - | No |
| Operating System | netapp | h300s_firmware | - | Yes |
| Hardware | netapp | h300s | - | No |
| Operating System | netapp | h500s_firmware | - | Yes |
| Hardware | netapp | h500s | - | No |
| Operating System | netapp | h700s_firmware | - | Yes |
| Hardware | netapp | h700s | - | No |
| Operating System | netapp | h300e_firmware | - | Yes |
| Hardware | netapp | h300e | - | No |
| Operating System | netapp | h500e_firmware | - | Yes |
| Hardware | netapp | h500e | - | No |
| Operating System | netapp | h700e_firmware | - | Yes |
| Hardware | netapp | h700e | - | No |
| Operating System | netapp | h410s_firmware | - | Yes |
| Hardware | netapp | h410s | - | No |