NASLDB: ISC BIND 9 Multiple Denial of Service Vulnerabilities
General
ID: 60120
Name: ISC BIND 9 Multiple Denial of Service Vulnerabilities
Summary: Checks version of BIND.
Credits: Tenable Network Security, Inc.
Classification
Risk: –
CVSS: –
CVSS Base Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS Temporal Vector: CVSS2#E:U/RL:OF/RC:C
Port: 53
Family: DNS
Type: Remote
Description
According to its self-reported version number, the remote
installation of BIND is affected by multiple denial of service
vulnerabilities :
– Under a heavy query load, the application may use
uninitialized data structures related to failed query
cache access. This error can cause the application to
crash. Note this issue only affects the application
when DNSSEC validation is enabled. (CVE-2012-3817)
– Under a heavy, incoming TCP query load, the application
can be affected by a memory leak that can lead to
decreased performance and application termination on
systems that kill processes that are out of memory.
(CVE-2012-3868)
Note that Nessus has only relied on the version itself and has not
attempted to determine whether or not the install is actually
affected.
Exploiting
Exploit Available: False
Exploitability Ease: No known exploits are available
Sources
CVE: CVE-2012-3817
OSVDB: –
Bugtraq: 54658
scipID: –
Timeline
Vulnerability Disclosure: 2012/07/24
Patch Release: 2012/07/24
Plugin Release: 2012/07/25
Plugin
Version: 1.5
Filename: bind9_991_p2.nasl
Filesize: 4220 bytes
MD5 Hash: 20e837cc35a7ebcbe83bfff428d8dd9c
Identification: –
Require Keys: bind/version", "Settings/ParanoidReport
Dependencies: "bind_version.nasl"
Copyright: This script is Copyright© 2012 Tenable Network Security, Inc.
- Letzte Plugins
- USN-1611-1 : thunderbird vulnerabilities
- USN-1610-1 : linux vulnerability
- USN-1609-1 : linux-ti-omap4 vulnerability
- SuSE 10 Security Update : PostgreSQL
- RHSA-2012-1364: bind97
- RHSA-2012-1363: bind
- RHSA-2012-1362: thunderbird
- RHSA-2012-1361: xulrunner
- Mandriva Linux Security Advisory : graphicsmagick
- FreeBSD : phpMyAdmin — Multiple XSS due to unescaped HTML output in Trigger, Procedure and Event pages and Fetching the version information from a non-SSL site is vulnerable to a MITM attack













