CVE-2003-0914

Description

ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.

Risk Information

Base Score
5.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
26.754

Associated Vulnerability

VulnerabilityOS Platform
Update bind 8.4.1 to latest versionWindows
Multiple Vulnerabilities are affected in BIND 8.2.4Windows
Multiple Vulnerabilities are affected in BIND 8.2.3Windows
Multiple Vulnerabilities are affected in BIND 8.2.5Windows
Multiple Vulnerabilities are affected in BIND 8.2.6Windows
Multiple Vulnerabilities are affected in BIND 8.3.0Windows
Multiple Vulnerabilities are affected in BIND 8.3.1Windows
Multiple Vulnerabilities are affected in BIND 8.3.2Windows
Multiple Vulnerabilities are affected in BIND 8.3.3Windows
Vulnerabilities CVE-2002-2211,CVE-2002-2212,CVE-2002-2213,CVE-2003-0914 are affected in BIND 8.2.7Windows
Vulnerabilities CVE-2002-2211,CVE-2002-2212,CVE-2002-2213,CVE-2003-0914 are affected in BIND 8.3.4Windows
Vulnerabilities CVE-2003-0914 are affected in BIND 8.3.5Windows
Vulnerabilities CVE-2003-0914 are affected in BIND 8.3.6Windows
Vulnerabilities CVE-2003-0914 are affected in BIND 8.4Windows
Vulnerabilities CVE-2003-0914 are affected in BIND 8.4.1Windows
Multiple Vulnerabilities affected in hp-ux 11.11NCM
CVE-2003-0914NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234