CVE-2009-0696
Published Jul 29, 2009
Last updated 6 years ago
Overview
- Description
- The dns_db_findrdataset function in db.c in named in ISC BIND 9.4 before 9.4.3-P3, 9.5 before 9.5.1-P3, and 9.6 before 9.6.1-P1, when configured as a master server, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an ANY record in the prerequisite section of a crafted dynamic update message, as exploited in the wild in July 2009.
- Source
- cret@cert.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-16
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:isc:bind:9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C8B18D7-4D15-46A7-8013-E6267127A427" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D7C7524-6943-4D94-8835-0221F0F0CD63" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4B45FE3-307E-4599-B2CF-5203FA606469" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F12E3841-1CF0-4969-A286-50769BAE31EB" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8B11586-1274-422D-873A-25DF193FB0C1" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "87D61CDA-BB78-4957-A502-6D77B567B3F2" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5A31533C-BD6E-4EB4-8047-3257BF51F592" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:a6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8537C88-4F73-43DD-9BDC-AF470882EED2" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D7D1A96-0A8E-4E3A-9442-701E3D1A1F5D" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93C23313-817F-4AB5-9058-31B0C7F954A4" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA9F93EC-1AA2-43A6-9869-8974C819370A" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:b4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "726720E2-4B59-4665-A72E-E2E996957EAA" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8F0AA9D0-9657-4E18-BF8B-45284C2D40A9" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "32E4FEA8-A654-4E9F-8948-5878E7C427C7" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "916D4013-27A5-4688-A985-A9B77F90AC45" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8583B8D-54A4-4064-810B-34F4F5A33A36" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.2:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "932E3F02-DD98-43FC-8077-50506E512989" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.2:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63C2A2FD-7AE7-462A-99B2-809BE1F35C15" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E01A12DF-E94B-426E-8751-96FC56105D5F" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.3:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7717B1A2-CAF5-49F3-AC73-273074BBEE02" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.3:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F037EE61-50D6-4C1E-B24B-25A6D212E7E1" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.3:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5140F118-BC25-43CB-B19C-0885A44D6646" }, { "criteria": "cpe:2.3:a:isc:bind:9.4.3:p2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82B9397F-463E-4F73-86F6-4EF3368E14BA" }, { "criteria": "cpe:2.3:a:isc:bind:9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A944178-032B-4637-842D-BC6B227043A3" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "32CEF8AD-9EE7-4ADA-888E-883751962529" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76B4ED8A-9182-4403-8F66-3EB360E73477" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84046EF9-AF5F-43FA-8E2C-11C7A01D17F6" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7545BB70-5C74-47A7-BB07-765BC8C2A5A4" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AE6BFDBD-DE4D-407F-86A4-FA78F99AA531" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4337C3FF-C15B-4EFD-AA13-F9CA0542C2FD" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AB6534DE-1ACB-4BCE-87A4-901F02F6CDCE" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:a7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE5F1A64-2428-4F85-8B93-3E324E983D2F" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F5D6222-3C1D-42FA-8882-1EE28B94D900" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "08899782-3182-46EB-947D-3BA9C371ACA2" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "575443B1-1638-497E-BCCF-E725B386ED88" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:p1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30616740-FC69-4B92-B997-B7AF7643656D" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:p2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E306D3A-11AE-4F35-971E-B47D47628052" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:p2_w1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4FF37B1D-04AD-4E37-A238-34BE7C5311E2" }, { "criteria": "cpe:2.3:a:isc:bind:9.5.0:p2_w2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6AAEE115-8EA0-4E2B-9960-647967B39606" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:*:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "6C8BE53C-2A4A-4959-AA97-5ABC04CC0E72" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "2677A691-12FF-40D9-90FD-772CE3C5A9B6" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r2:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "D8A7089F-C797-4024-AFC1-E0E6458DE848" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r3:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "7DD82385-C550-4B18-98EA-D98E3091BB45" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r4:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "3A33A726-ED5B-45EB-8474-9298AE99DA6E" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r4_p1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "F87EAE50-93EC-4297-8E05-0E904CC24272" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r5:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "0D2999C4-F1DC-4DD7-9302-C148EB3E9732" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r5_b1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "275EA814-22C2-4B38-B26A-ACD393414DB5" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r5_p1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "3E41290E-0F4A-4113-BBE1-BC33EBDB7141" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r6:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "EB714DDF-DA52-4E7C-B40F-DE2A85901998" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r6_b1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "21AE1593-38AC-4345-BD69-6589627A10FC" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r6_rc1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "9BC239C2-22E1-4E12-888C-C002C2CD1B9F" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r6_rc2:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "7C21A765-6EB9-4213-BD35-FBD0E5C6A63C" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r7:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "9CEDA8E0-A429-4099-96B2-F63EAA9B33FF" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r7_p1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "4FEFE357-E5A6-4B22-8A30-25C9100BBCFC" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r7_p2:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "F846EB9A-DE66-44F9-AEB8-A297D18CFF16" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r9:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "777724C0-3259-4D40-82F6-4588CA79A819" }, { "criteria": "cpe:2.3:a:isc:bind:9.6:r9_p1:*:*:esv:*:*:*", "vulnerable": true, "matchCriteriaId": "F0CB9332-22B3-48AC-919A-A4E5F43D9B8C" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F42F7AF7-D37C-4213-B2BC-D2B9FE725BDE" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:a1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A964450E-7DA8-478B-923E-E8CD1BA0F09C" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "32FAE1EF-3BF0-4B12-8F08-AA061A6D63FF" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:p1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5ABB3FC8-0A0D-4881-9137-5F6A8CCB9345" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C02A3BC0-78A4-4F4D-AA5B-3C05122137EB" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "178C7D9F-8699-42A3-8729-0BC6323EBDF3" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1BEF53C6-E555-49D4-B4B2-63BA71CC77E2" }, { "criteria": "cpe:2.3:a:isc:bind:9.6.1:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B4565A6-122B-406C-A7BE-A029F92799B5" } ], "operator": "OR" } ] } ]